
Research
Malicious NuGet Packages Typosquat Nethereum to Exfiltrate Wallet Keys
The Socket Threat Research Team uncovered malicious NuGet packages typosquatting the popular Nethereum project to steal wallet keys.
typing-extensions
Advanced tools
Documentation – PyPI
The typing_extensions
module serves two related purposes:
typing.TypeGuard
is new in Python 3.10, but typing_extensions
allows
users on previous Python versions to use it too.typing
module.typing_extensions
is treated specially by static type checkers such as
mypy and pyright. Objects defined in typing_extensions
are treated the same
way as equivalent forms in typing
.
typing_extensions
uses
Semantic Versioning. The
major version will be incremented only for backwards-incompatible changes.
Therefore, it's safe to depend
on typing_extensions
like this: typing_extensions ~=x.y
,
where x.y
is the first version that includes all features you need.
This
is equivalent to typing_extensions >=x.y, <(x+1)
. Do not depend on ~= x.y.z
unless you really know what you're doing; that defeats the purpose of
semantic versioning.
See the documentation for a complete listing of module contents.
See CONTRIBUTING.md
for how to contribute to typing_extensions
.
FAQs
Backported and Experimental Type Hints for Python 3.9+
We found that typing-extensions demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
The Socket Threat Research Team uncovered malicious NuGet packages typosquatting the popular Nethereum project to steal wallet keys.
Product
A single platform for static analysis, secrets detection, container scanning, and CVE checks—built on trusted open source tools, ready to run out of the box.
Product
Socket is launching experimental protection for the Hugging Face ecosystem, scanning for malware and malicious payload injections inside model files to prevent silent AI supply chain attacks.