Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
patchelf <https://github.com/NixOS/patchelf>
_ is a small utility to modify the dynamic linker
and RPATH of ELF executables.
This project allows to get this utility from PyPI <https://pypi.org>
_ with a simple pip install patchelf
.
This repo only aims at providing a rebuild of patchelf on PyPI and as such, only issues related to this specific packaging will be dealt with in this repository.
For all issues you might see when using patchelf
, please report directly upstream after reproducing with one of their pre-built
binaries or rebuilding patchelf from their repository: https://github.com/NixOS/patchelf
.. image:: https://img.shields.io/pypi/v/patchelf.svg :target: https://pypi.python.org/pypi/patchelf
.. image:: https://github.com/mayeut/patchelf-pypi/actions/workflows/build.yml/badge.svg :target: https://github.com/mayeut/patchelf-pypi/actions/workflows/build.yml
The following platforms are supported with binary wheels:
.. table::
+---------------+--------------------------+ | OS | Arch | +===============+==========================+ | Linux x86_64 | | manylinux1+ | | | | musllinux_1_1+ | +---------------+--------------------------+ | Linux i686 | | manylinux1+ | | | | musllinux_1_1+ | +---------------+--------------------------+ | Linux aarch64 | | manylinux2014+ | | | | musllinux_1_1+ | +---------------+--------------------------+ | Linux ppc64le | | manylinux2014+ | | | | musllinux_1_1+ | +---------------+--------------------------+ | Linux s390x | | manylinux2014+ | | | | musllinux_1_1+ | +---------------+--------------------------+
This project is covered by the Apache License, Version 2.0 <http://www.apache.org/licenses/LICENSE-2.0>
_.
patchelf is distributed under the OSI-approved GNU General Public License v3.0. For more information about patchelf, visit https://github.com/NixOS/patchelf
FAQs
A small utility to modify the dynamic linker and RPATH of ELF executables.
We found that patchelf demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.