Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Social Media Prediction Model
In order to get this package working you will need to install it via pip (with a Python3.5 version or higher) on the terminal by typing:
$ pip install twinpics
Additionally, if you want to use the latest version instead of the stable one, you can just use the following command:
$ pip install git+https://github.com/albMart/Twinpics.git@developer
The developer branch ensures the user that the most updated version will always be the working and fully operative so as not to wait until the stable release on the master branch comes out (which eventually may take some time depending on the amount of issues to solve).
You can find the complete developer documentation at: https://twinpics.readthedocs.io/, hosted on Read the Docs and generated using sphinx with the theme sphinx_rtd_theme which is the standard Read the Docs theme for sphinx.
So as to use this Python package, a sample piece of code is presented below:
import twinpics
twinpics.sample_function()
So on, the previous piece of code outputs the following line:
"This is a sample function"
As this is an open source project it is open to contributions, bug reports, bug fixes, documentation improvements, enhancements and ideas. There is an open tab of issues where anyone can open new issues if needed or navigate through them in order to solve them or contribute to its solving. Remember that issues are not threads to describe multiple problems, this does not mean that issues can't be discussed, but so to keep a structured project management, the same issue should not describe different problems, just the main one and some nested/related errors that may be found.
When citing this repository on your publications please use the following BibTeX citation:
@misc{
twinpics,
author = { Alberto Martín Mateos and Niloufar Shoeibi },
title = { twinpics - Social Media Prediction Model },
year = { 2020 },
publisher = {GitHub},
journal = {GitHub Repository},
howpublished = {\url{https://github.com/albMart/twinpics}}
}
FAQs
twinpics — Social Media Prediction Model
We found that twinpics demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.