
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
= Anotherinbox
By Rodrigo Franco
The original {Otherinbox Defender}[http://mashable.com/2008/09/08/otherinbox/] is no more. Sadly, the current version is subpar and do not meet my needs. This project attempts to reproduce the core functionalities of OIB Defender using a GMail account. As of right now, the following functionalities are implemented:
== Getting started (Pre-requisites)
== Setup instructions
Install the gem as usual:
$ gem install anotherinbox
Create a .anotherinbox file in your home directory. It should look like this:
accounts: - username: anotherinbox@gmail.com password: password42 email: personal@email.com
- username: anotheranotherinbox@gmail.com
password: password42!
email: personal2@email.com
config: use_preview: false bucket: anotherinbox.amazon.bucket aws_key: KEY-GOES-HERE aws_secret: SECRET-GOES-HERE
Just one account is required, but you can have more than one if you want.
To enable the digest previews, change use_preview to true and enter your AWS credentials (and bucket name).
Add the following lines to your cron tab:
*/5 * * * * anotherinbox process 55 04 * * * anotherinbox digest
That will ensure the script organizes your mailbox each 5 minutes. It will also send you the daily digest at 04:55am.
== Contributing to anotherinbox
== Copyright
Copyright (c) 2011 rodrigo franco (caffo). See LICENSE.txt for further details.
FAQs
Unknown package
We found that anotherinbox demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.