Research
Security News
Malicious npm Package Targets Solana Developers and Hijacks Funds
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
SSL Metrics - Meta package to install all SoftwareSystemsLaboratory/ssl-metrics packages at once
A helper package to install all Software Systems Laboratory Metrics tools
The Software Systems Laboratory (SSL) Metrics Project is a collection of python
tools that can be used on any Git and/or GitHub to generate longitudinal graphs of classical metrics. They can also be modified by outside teams or individuals for usage of their own personal projects.
This project is licensed under the BSD-3-Clause. See the LICENSE for more information.
To maximize the utility of this project and the greater SSL Metrics project, the following software packages are required:
All tools developed for the greater SSL Metrics project must target Mac OS and Linux. SSL Metrics software is not supported or recommended to run on Windows but can be modified to do so at your own risk.
It is recomendded to develop on Mac OS or Linux. However, if you are on a Windows machine, you can use WSL to develop as well.
git
wc
The software listed in this section is meant for developing tools
All listed Python software assumes that you have downloaded and installed Python 3.9.6 or greater.
black
build
isort
pylint
You can install all of the Python software with this one-liner:
pip install --upgrade black build isort pip pylint
This projects bundles the following python
projects into one pip
installable:
For informaton on how to use each of the respective projects, see their respective GitHub pages.
You can install all of the Python software with this one-liner:
pip install --upgrade pip ssl-metrics-meta
FAQs
SSL Metrics - Meta package to install all SoftwareSystemsLaboratory/ssl-metrics packages at once
We found that ssl-metrics-meta demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
Security News
Research
Socket researchers have discovered malicious npm packages targeting crypto developers, stealing credentials and wallet data using spyware delivered through typosquats of popular cryptographic libraries.
Security News
Socket's package search now displays weekly downloads for npm packages, helping developers quickly assess popularity and make more informed decisions.