
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
A CLI that randomly picks files for you, so you can challenge yourself to create something with them.
It can be used for example, to pick random samples, MIDI files, presets for you. Now use those randomly picked files to create something awesome out of it :)
To use it, you need to create a config file which lists the folders and file extension to consider.
As a result, it will create a new folder and copy all the randomly chosen files into it according to the config structure. It will also add a report, what files had been picked, where the originals are and where the copies are.
# Execute it like following
npx randospire examples/music-example.yaml
# Optionally: Provide target directory:
npx randospire examples/music-example.yaml ./tmp
# Install or update the CLI globally
npm i -g randospire
# Now use it:
randospire examples/music-example.yaml ./tmp
The config file is a multi-document YAML file. The interface is described in src/config.ts, but how it works can be easily understood from examples.
It is probably easiest to copy an example and change it to your purposes.
Here is one example file with comments explaining it: ./examples/music-example.yaml:
# Execute with npx randospire ./music-example.yaml
# Each --- indicates a new YAML document, or in our case, a new job
---
# The name should be something meaningful to you.
# It also doubles as a folder name for the output, so make sure the names are unique and work as folder names
name: 'Drum Hits'
# How many files to pick randomly
amount: 7
# A list of input folders where to look for
inputFolders:
- C:\Sound Library\AUDIO Drum Hits
- C:\Sound Library\AUDIO Drum Kits'
# Optional: Limit file extensions. If not given, all files are considered.
fileExtensions:
- 'wav'
- 'flac'
- 'mp3'
---
name: 'Drum Loops'
amount: 2
inputFolders:
- C:\Sound Library\AUDIO Drum Loops
---
name: 'U-He Hive 2 Patches'
amount: 2
inputFolders:
# %USERPROFILE% can be used to point to the user home directory
- '%USERPROFILE%\Documents\u-he\Hive.data\Presets\Hive'
FAQs
Randomly pick files to challenge you to create something with them.
The npm package randospire receives a total of 0 weekly downloads. As such, randospire popularity was classified as not popular.
We found that randospire demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.