Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
FeelUOwn 是一个稳定、用户友好以及高度可定制的音乐播放器。
.fuorc
,类似 .vimrc
和 .emacs
使用系统包管理器一键安装 FeelUOwn 及其扩展吧!
对于 Arch Linux 和 macOS,你可以分别使用如下方式安装:
# Arch Linux
yay -S feeluown # 安装稳定版,最新版的包名为 feeluown-git
yay -S feeluown-netease # 按需安装其它扩展
yay -S feeluown-kuwo
yay -S feeluown-bilibili
# macOS(也可以下载打包好的二进制)
brew tap feeluown/feeluown
brew install feeluown --with-battery # 安装 FeelUOwn 以及扩展
feeluown genicon # 在桌面生成 FeelUOwn 图标
Windows 和 macOS 用户可以在 Release 页面下载预打包好的二进制。 Gentoo, NixOS, Debian, openSUSE 等 Linux 发行版也支持使用其系统包管理器安装! 详情可以参考文档:https://feeluown.readthedocs.io/ , 也欢迎你加入开发者/用户交流群。
FeelUown(以下简称“本软件”)是一个个人媒体资源播放工具。本软件提供的所有功能和资料 不得用于任何商业用途。用户可以自由选择是否使用本产品提供的软件。如果用户下载、安装、 使用本软件,即表明用户信任该软件作者,软件作者对任何原因在使用本软件时可能对用户自己 或他人造成的任何形式的损失和伤害不承担责任。
任何单位或个人认为通过本软件提供的功能可能涉嫌侵犯其合法权益,应该及时向 feeluown 组织书面反馈,并提供身份证明、权属证明及详细侵权情况证明,在收到上述法律文件后, feeluown 组织将会尽快移除被控侵权内容。(联系方式: yinshaowen241 [at] gmail [dot] com )
FAQs
*nix music player
We found that feeluown demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.