
Research
/Security News
Toptal’s GitHub Organization Hijacked: 10 Malicious Packages Published
Threat actors hijacked Toptal’s GitHub org, publishing npm packages with malicious payloads that steal tokens and attempt to wipe victim systems.
mycdp
) is a collection of autogenerated CDP (Chrome DevTools Protocol) utilities for enabling Chromium automation with Python without the need for external automation drivers (such as WebDriver) for controlling the browser.Additionally, MyCDP can be used to connect to an existing Chromium browser instance if the remote-debugging-port
is known. This advanced option allows for browsers to be controlled by multiple automation frameworks at the same time.
This isn't a standalone product. Think of MyCDP as the engine for your framework: By itself, the engine is of little use, but when connected to a framework that provides an interface, MyCDP can transform Chromium into a powerhouse.
SeleniumBase (via CDP Mode) is one of the frameworks using MyCDP.
For the direct CDP API, (which MyCDP calls), see: https://chromedevtools.github.io/devtools-protocol/
Note that CDP itself can be found in most automation frameworks:
MyCDP makes CDP more accessible to Python frameworks.
FAQs
Autogenerated CDP utilities for Python
We found that mycdp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Threat actors hijacked Toptal’s GitHub org, publishing npm packages with malicious payloads that steal tokens and attempt to wipe victim systems.
Research
/Security News
Socket researchers investigate 4 malicious npm and PyPI packages with 56,000+ downloads that install surveillance malware.
Security News
The ongoing npm phishing campaign escalates as attackers hijack the popular 'is' package, embedding malware in multiple versions.