
Research
NPM targeted by malware campaign mimicking familiar library names
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
ZXing (pronounced "zebra crossing") is an open-source, multi-format 1D/2D barcode image processing library originally implemented by Google in Java. This is a Silverlight port of the csharp ZXing port created by Suraj Supekar at revision 1202 in the SVN repository. It was designed for use in the PhraseMeme Scanner application, but can be used to create other Windows Phone or Silverlight applications that scan and process Barcodes. The library currently supports: UPC-A and UPC-E EAN-8 and EAN-13 Code 39 Code 128 QR Code ITF Data Matrix (Not tested) PDF417 (Not tested)
FAQs
ZXing (pronounced "zebra crossing") is an open-source, multi-format 1D/2D barcode image processing library originally implemented by Google in Java. This is a Silverlight port of the csharp ZXing port created by Suraj Supekar at revision 1202 in the SVN repository. It was designed for use in the PhraseMeme Scanner application, but can be used to create other Windows Phone or Silverlight applications that scan and process Barcodes. The library currently supports: UPC-A and UPC-E EAN-8 and EAN-13 Code 39 Code 128 QR Code ITF Data Matrix (Not tested) PDF417 (Not tested)
We found that zxing.wp7 demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
Research
Socket's research uncovers three dangerous Go modules that contain obfuscated disk-wiping malware, threatening complete data loss.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.