
Security News
Critical Security Vulnerability in React Server Components
React disclosed a CVSS 10.0 RCE in React Server Components and is advising users to upgrade affected packages and frameworks to patched versions now.
curve-secp256k1
Advanced tools
This gem wraps libsecp256k1 from the Bitcoin source in a couple of Ruby classes.
Use in a pipeline to generate crypto-currency addresses and for BIP32 operations (public key addition).
To use this gem, libsecp256k1 must be installed on your system
Generate a new private key:
key = Secp256k1::Key.new
Get a compressed public key (used by most cryptocurrencies):
key.public_key
Load an existing private key:
key = Secp256k1::Key.new("256-bit binary private key value")
sudo apt install libsecp256k1-dev
It still doesn't come packaged with brew by default but there are a few taps where you can find it.
git clone https://github.com/bitcoin-core/secp256k1
cd secp256k1
./autogen.sh
./configure --enable-module-recovery --enable-experimental --enable-module-ecdh --enable-module-schnorr
make && sudo make install
ext? (as a git submodule)FAQs
Unknown package
We found that curve-secp256k1 demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
React disclosed a CVSS 10.0 RCE in React Server Components and is advising users to upgrade affected packages and frameworks to patched versions now.

Research
/Security News
We spotted a wave of auto-generated “elf-*” npm packages published every two minutes from new accounts, with simple malware variants and early takedowns underway.

Security News
TypeScript 6.0 will be the last JavaScript-based major release, as the project shifts to the TypeScript 7 native toolchain with major build speedups.