Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
= DRbFire
The DRb Firewall Protocol, or DRbFire, is a DRb protocol that allows easy bidirectional communication in the presence of a firewall.
== Usage
DRbFire's usage is documented in the source using RDoc.
== Installation
See the INSTALL file.
== History
See the ChangeLog file.
== Feedback
Feedback of any kind is welcome; you can contact me (Nathaniel Talbott) at drbfire@talbott.ws.
== More Information
DRbFire's home is at http://rubyforge.org/projects/drbfire.
== Copyright
Copyright (c) 2004 Nathaniel Talbott. All Rights Reserved.
== License
DRbFire is free software distributed under the Ruby license. See the COPYING file in the standard Ruby distribution for details.
== Warranty
This software is provided "as is" and without any express or implied warranties, including, without limitation, the implied warranties of merchantibility and fitness for a particular purpose.
FAQs
Unknown package
We found that ntalbott-drbfire demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.