Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
.. vim: readonly nomodifiable .. This file is generated and will be over-written. See the Makefile and mk_readme.py files in docs for more details.
A terminal based tool to quickly combine (rich) text snippets into the clipboard.
https://github.com/paul-ollis/snippets/assets/6062510/acc93396-c7b8-429f-825e-cfd940959760
Clippets is a Textual (https://textual.textualize.io/
) framework based
application.
This is a beta software. It is definitely useful and usable in its current form:
However:
There are still areas of mouse and keyboard support that beg improvement.
Some desirable features are obviously missing, such as:
documentation
_, but it is far from complete.The full documentation
_ includes instructions on installing and running
Clippets for the first time. See@
Windows installation
_.Linux installation
_.Starting Clippets
_... _Windows installation: https://clippets.readthedocs.io/en/main/getting-started/windows.html .. _Linux installation: https://clippets.readthedocs.io/en/main/getting-started/linux.html .. _Starting Clippets: https://clippets.readthedocs.io/en/main/getting-started/first-run.html .. _documentation: https://clippets.readthedocs.io/en/main
Clippets would have been much harder to write without Textual
_ as the
application framework.
I am also heavily indebted to Ted Conbeer for his textual-textarea widget
_,
which provided much of the code for Clippets' built in editor.
.. _Textual: https://textual.textualize.io
.. _textual-textarea widget
: https://github.com/tconbeer/textual-textarea
FAQs
TUI to build up clipboard content from (rich) text snippets.
We found that clippets demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.