Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
This is a ruby gem that provides access to the API of sarvwave. See the documentation of the API here.
It enables a ruby application to interact with sarvwave by calling ruby methods instead of HTTP requests, making it a lot easier to interact with sarvwave. It also formats the responses to a ruby-friendly format and includes helper classes to deal with more complicated API calls, such as the pre-upload of slides.
A few features it has:
true
);sarvwaveException
exceptions;This gem is mainly used with Mconf-Web through SarvwaveRails. You can always use it as a reference for verions of dependencies and examples of how to use the gem.
The current version of this gem supports all the following versions of sarvwave:
Older versions:
api-0.64
. The last version with support to 0.64 is
version
0.0.10. It
supports versions 0.64 and 0.7.Tested in rubies:
Use these versions to be sure it will work. Other patches and patch versions of these rubies (e.g. ruby 1.9.3-p194 or 2.1.2) should work as well.
For a list of releases and release notes see CHANGELOG.md.
Information for developers of sarvwave-api-ruby
can be found in our
wiki.
The development of this gem is guided by the requirements of the project Mconf. To know more about it visit the project's wiki.
Distributed under The MIT License (MIT). See LICENSE for the latest license, valid for all versions after 0.0.4 (including it), and LICENSE_003 for version 0.0.3 and all the previous versions.
This project is developed as part of Mconf (http://mconf.org).
Mailing list:
Contact:
FAQs
Unknown package
We found that sarvwave-api-ruby demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.