
Research
/Security News
Contagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware Loader
North Korean threat actors deploy 67 malicious npm packages using the newly discovered XORIndex malware loader.
Doppkit is a tool for interacting with the USACE GRiD service. The primary usage is for downloading the exports for a specific AOI by providing an access token and AOI PK. Doppkit is designed so it can be functional on computers that may not have a reliable network connection.
For convenience, single-file code-signed binaries for Windows are provided on the releases page.
The text UI to show download progress and log-information is created using the rich library.
From source:
$ pip install doppkit
...
$ doppkit --help
From built executable:
> doppkit-cli.exe --help
The doppkit GUI which uses the PySide6 bindings of the Qt framework.
From source:
$ pip install "doppkit[GUI]"
...
$ doppkit-gui
Using generated binary:
> doppkit.exe
The token needed to access the AOI can be provided by one of several ways.
--token TOKEN
argument to your command line usageGRID_ACCESS_TOKEN
export GRID_ACCESS_TOKEN=KMCb6Nl799EFPproLLJR8bgeqzd4q
doppkit --progress True list --filter "Chicago"
doppkit --log-level DEBUG --progress True sync 80903
FAQs
Tool to allow retrival of USACE GRiD data
We found that doppkit demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
North Korean threat actors deploy 67 malicious npm packages using the newly discovered XORIndex malware loader.
Security News
Meet Socket at Black Hat & DEF CON 2025 for 1:1s, insider security talks at Allegiant Stadium, and a private dinner with top minds in software supply chain security.
Security News
CAI is a new open source AI framework that automates penetration testing tasks like scanning and exploitation up to 3,600× faster than humans.