/blog/socket-acquires-coana-re... | | 🚀 Big News: Socket Acquires Coana to Bring Reachability Analysis to Every Appsec Team.Learn more → |
https://socket.dev/ | | IMG-ALT Socket |
https://socket.dev/auth/login | | Sign in |
https://socket.dev/demo | New window | Demo |
https://socket.dev/github-app | | Install |
https://socket.dev/ | Text duplicate | IMG-ALT Socket |
https://socket.dev/pricing | | Pricing |
https://socket.dev/love | | Love |
https://docs.socket.dev/ | External Subdomain | Docs |
https://socket.dev/auth/login | Text duplicate | Sign in |
https://socket.dev/demo | New window Text duplicate | Demo |
https://socket.dev/github-app | Text duplicate | Install |
https://socket.dev/github-app | | Install GitHub App |
https://socket.dev/demo | New window | Book a Demo |
/npm/package/jquery | | jquery timmywil published 3.7.1 • 2 years ago |
/npm/package/left-pad | | left-pad stevemao published 1.3.0 • 7 years ago |
/npm/package/react | | react react-bot published 19.1.0 • 2 months ago |
/npm/package/@ms-atlas-module/... | | @ms-atlas-module/datastudio-datafactory 0.1.36 by mvm_hackerone Removed from npm Blocked by Socket The script is downloading a file from a remote server and ... |
/npm/package/body-time/overvie... | | body-time 0.0.1-security.119 by npm Removed from npm Blocked by Socket Malicious code in body-time (npm) Source: ghsa-malware (3ef5475299e1bccf37ad706980da6d... |
/npm/package/body-string-rest/... | | body-string-rest 0.0.1-security.139 by npm Removed from npm Blocked by Socket Malicious code in body-string-rest (npm) Source: ghsa-malware (4d5906e08fd5b0e6... |
/npm/package/curri-slack/overv... | | curri-slack 1.9.1 by npm Removed from npm Blocked by Socket Malicious code in curri-slack (npm) Source: ghsa-malware (a00fcf2aed2ef83f63aa909e95ceaeba67a19ae... |
/npm/package/ngpd-merceros-ui-... | | ngpd-merceros-ui-meta 5.0.0 by fredflintstone2 Removed from npm Blocked by Socket This script is making a request to a remote server, which could potentially... |
/npm/package/com.unity.modules... | | com.unity.modules.uielements 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in com.unity.modules.uielements (npm) Source: ghsa-malware (2... |
/npm/package/grunttools/overvi... | | grunttools 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in grunttools (npm) Source: ghsa-malware (97b1ac5108f2942f5049cf1d6b851f3e0d502... |
/npm/package/secure-crypto-nod... | | secure-crypto-node-utils 1.0.19 by raveenavunnam Removed from npm Blocked by Socket The practice of sending AES secret keys and IV to an external server for ... |
/npm/package/simple-qloud-logg... | | simple-qloud-logger 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in simple-qloud-logger (npm) Source: ghsa-malware (06ea09cd18d7a4ebab2... |
/npm/package/@portal-packages/... | | @portal-packages/core 15.99.99 by alexandrebn Live on npm Blocked by Socket Malicious code in @portal-packages/core (npm) Source: ossf-package-analysis (48ac... |
/npm/package/azure-graphrbac/o... | | azure-graphrbac 4.24.1000 by npm Removed from npm Blocked by Socket Malicious code in azure-graphrbac (npm) Source: ghsa-malware (8753478507375846584df851f88... |
/npm/package/pay-with-bitpay/o... | | pay-with-bitpay 0.0.1-security.0 by npm Removed from npm Blocked by Socket Malicious code in pay-with-bitpay (npm) Source: ghsa-malware (d6ebb5b5e2e2c9c966ed... |
/npm/package/psaqko/overview/1... | | psaqko 1.2.0 by 17b4a931 Removed from npm Blocked by Socket Malicious code in psaqko (npm) Source: ghsa-malware (f46d9292e9dfb79641894e17c4a5615fdc11389b7ddf... |
/npm/package/com.unity.burst/o... | | com.unity.burst 1.8.8 Live on npm Blocked by Socket Malicious code in com.unity.burst (npm) Source: ghsa-malware (fa1200292d4c5c8b4251c82a2399f15492df62ae7f6... |
/npm/package/satreg-bits/overv... | | satreg-bits 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in satreg-bits (npm) Source: ghsa-malware (c0d4daaf60d5c24936bced88eb121b8aac5... |
/npm/package/pp-vx/overview/68... | | pp-vx 68.5.2 by npm Removed from npm Blocked by Socket Malicious code in pp-vx (npm) Source: ghsa-malware (91dd31be340e93b69d3d7007d71b26e520d0bb20dff730f4e1... |
/npm/package/shaka-streamer/ov... | | shaka-streamer 1.0.0 by npm Removed from npm Blocked by Socket Malicious code in shaka-streamer (npm) Source: ghsa-malware (e7e116b92ae5de6b655e072cecc31ef81... |
/npm/package/nethouse-ui/overv... | | nethouse-ui 5.9843.1 by npm Removed from npm Blocked by Socket Malicious code in nethouse-ui (npm) Source: ghsa-malware (93e27fe8f6277d623b2533e0edde6a1f83c1... |
/npm/package/ktst/files/1.0.0/... | | ktst 1.0.0 by kartiikeyvinayak Removed from npm Blocked by Socket The provided source code exhibits clear signs of malicious behavior, including data exfiltr... |
/npm/package/byted-lark-js-com... | | byted-lark-js-component 90.0.0 by ynfernix Removed from npm Blocked by Socket Malicious code in byted-lark-js-component (npm) Source: ghsa-malware (374d8f817... |
/npm/package/@twork-mw/display... | | @twork-mw/display-mode 0.13.99 by youghurtrunner Live on npm Blocked by Socket This file retrieves and executes remote code from openfintech[.]online/fronten... |
/npm/package/zksync-hardhat-te... | | zksync-hardhat-template 99.99.99 by karal1102 Removed from npm Blocked by Socket Malicious code in zksync-hardhat-template (npm) Source: ghsa-malware (8b8c57... |
/npm/package/body-time/overvie... | | body-time 0.0.1-security.65 by npm Removed from npm Blocked by Socket Malicious code in body-time (npm) Source: ghsa-malware (3ef5475299e1bccf37ad706980da6d6... |
/npm/package/phapntomjs0prebeu... | | phapntomjs0prebeuilt 0.0.1-security.0 by npm Live on npm Blocked by Socket Malicious code in phapntomjs0prebeuilt (npm) Source: ghsa-malware (56919771e62bd5a... |
/npm/package/nutildify/overvie... | | nutildify 0.0.1-security.4 by npm Removed from npm Blocked by Socket Malicious code in nutildify (npm) Source: ghsa-malware (00f661f5ef11c9a3ba59c4bb39aff67d... |
/npm/package/@ms-atlas-module/... | Text duplicate | @ms-atlas-module/datastudio-datafactory 0.1.36 by mvm_hackerone Removed from npm Blocked by Socket The script is downloading a file from a remote server and ... |
/npm/package/body-time/overvie... | Text duplicate | body-time 0.0.1-security.119 by npm Removed from npm Blocked by Socket Malicious code in body-time (npm) Source: ghsa-malware (3ef5475299e1bccf37ad706980da6d... |
/npm/package/body-string-rest/... | Text duplicate | body-string-rest 0.0.1-security.139 by npm Removed from npm Blocked by Socket Malicious code in body-string-rest (npm) Source: ghsa-malware (4d5906e08fd5b0e6... |
/npm/package/curri-slack/overv... | Text duplicate | curri-slack 1.9.1 by npm Removed from npm Blocked by Socket Malicious code in curri-slack (npm) Source: ghsa-malware (a00fcf2aed2ef83f63aa909e95ceaeba67a19ae... |
/npm/package/ngpd-merceros-ui-... | Text duplicate | ngpd-merceros-ui-meta 5.0.0 by fredflintstone2 Removed from npm Blocked by Socket This script is making a request to a remote server, which could potentially... |
/npm/package/com.unity.modules... | Text duplicate | com.unity.modules.uielements 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in com.unity.modules.uielements (npm) Source: ghsa-malware (2... |
/npm/package/grunttools/overvi... | Text duplicate | grunttools 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in grunttools (npm) Source: ghsa-malware (97b1ac5108f2942f5049cf1d6b851f3e0d502... |
/npm/package/secure-crypto-nod... | Text duplicate | secure-crypto-node-utils 1.0.19 by raveenavunnam Removed from npm Blocked by Socket The practice of sending AES secret keys and IV to an external server for ... |
/npm/package/simple-qloud-logg... | Text duplicate | simple-qloud-logger 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in simple-qloud-logger (npm) Source: ghsa-malware (06ea09cd18d7a4ebab2... |
/npm/package/@portal-packages/... | Text duplicate | @portal-packages/core 15.99.99 by alexandrebn Live on npm Blocked by Socket Malicious code in @portal-packages/core (npm) Source: ossf-package-analysis (48ac... |
/npm/package/azure-graphrbac/o... | Text duplicate | azure-graphrbac 4.24.1000 by npm Removed from npm Blocked by Socket Malicious code in azure-graphrbac (npm) Source: ghsa-malware (8753478507375846584df851f88... |
/npm/package/pay-with-bitpay/o... | Text duplicate | pay-with-bitpay 0.0.1-security.0 by npm Removed from npm Blocked by Socket Malicious code in pay-with-bitpay (npm) Source: ghsa-malware (d6ebb5b5e2e2c9c966ed... |
/npm/package/psaqko/overview/1... | Text duplicate | psaqko 1.2.0 by 17b4a931 Removed from npm Blocked by Socket Malicious code in psaqko (npm) Source: ghsa-malware (f46d9292e9dfb79641894e17c4a5615fdc11389b7ddf... |
/npm/package/com.unity.burst/o... | Text duplicate | com.unity.burst 1.8.8 Live on npm Blocked by Socket Malicious code in com.unity.burst (npm) Source: ghsa-malware (fa1200292d4c5c8b4251c82a2399f15492df62ae7f6... |
/npm/package/satreg-bits/overv... | Text duplicate | satreg-bits 0.0.1-security by npm Live on npm Blocked by Socket Malicious code in satreg-bits (npm) Source: ghsa-malware (c0d4daaf60d5c24936bced88eb121b8aac5... |
/npm/package/pp-vx/overview/68... | Text duplicate | pp-vx 68.5.2 by npm Removed from npm Blocked by Socket Malicious code in pp-vx (npm) Source: ghsa-malware (91dd31be340e93b69d3d7007d71b26e520d0bb20dff730f4e1... |
/npm/package/shaka-streamer/ov... | Text duplicate | shaka-streamer 1.0.0 by npm Removed from npm Blocked by Socket Malicious code in shaka-streamer (npm) Source: ghsa-malware (e7e116b92ae5de6b655e072cecc31ef81... |
/npm/package/nethouse-ui/overv... | Text duplicate | nethouse-ui 5.9843.1 by npm Removed from npm Blocked by Socket Malicious code in nethouse-ui (npm) Source: ghsa-malware (93e27fe8f6277d623b2533e0edde6a1f83c1... |
/npm/package/ktst/files/1.0.0/... | Text duplicate | ktst 1.0.0 by kartiikeyvinayak Removed from npm Blocked by Socket The provided source code exhibits clear signs of malicious behavior, including data exfiltr... |
/npm/package/byted-lark-js-com... | Text duplicate | byted-lark-js-component 90.0.0 by ynfernix Removed from npm Blocked by Socket Malicious code in byted-lark-js-component (npm) Source: ghsa-malware (374d8f817... |
/npm/package/@twork-mw/display... | Text duplicate | @twork-mw/display-mode 0.13.99 by youghurtrunner Live on npm Blocked by Socket This file retrieves and executes remote code from openfintech[.]online/fronten... |
/npm/package/zksync-hardhat-te... | Text duplicate | zksync-hardhat-template 99.99.99 by karal1102 Removed from npm Blocked by Socket Malicious code in zksync-hardhat-template (npm) Source: ghsa-malware (8b8c57... |
/npm/package/body-time/overvie... | Text duplicate | body-time 0.0.1-security.65 by npm Removed from npm Blocked by Socket Malicious code in body-time (npm) Source: ghsa-malware (3ef5475299e1bccf37ad706980da6d6... |
/npm/package/phapntomjs0prebeu... | Text duplicate | phapntomjs0prebeuilt 0.0.1-security.0 by npm Live on npm Blocked by Socket Malicious code in phapntomjs0prebeuilt (npm) Source: ghsa-malware (56919771e62bd5a... |
/npm/package/nutildify/overvie... | Text duplicate | nutildify 0.0.1-security.4 by npm Removed from npm Blocked by Socket Malicious code in nutildify (npm) Source: ghsa-malware (00f661f5ef11c9a3ba59c4bb39aff67d... |
https://socket.dev/alerts | | 20 more alerts → |
/features/github | | IMG-ALT GitHub app screenshot |
https://twitter.com/natfriedma... | External | Nat Friedman |
https://twitter.com/feross | External | @feross |
https://twitter.com/SocketSecu... | External | @SocketSecurity |
https://twitter.com/noopkat/st... | External | Suz Hinton |
https://twitter.com/matteocoll... | External | Matteo Collina |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://twitter.com/dcposch/st... | External | DC Posch |
https://twitter.com/luisnaranj... | External | Luis Naranjo |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://socket.dev/ | | socket.dev |
https://npmjs.org/ | Nofollow External | npmjs.org |
https://twitter.com/leanthebea... | External | Elena Nadolinski |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://twitter.com/jsjoeio/st... | External | Joe Previte |
https://twitter.com/feross | External Text duplicate | @feross |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://twitter.com/CoderHQ | External | @CoderHQ |
https://twitter.com/JoshuaKGol... | External | Josh Goldberg |
https://twitter.com/feross | External Text duplicate | @feross |
https://socket.dev/love | | Even more developer love → |
https://socket.dev/github-app | Text duplicate | Install GitHub App |
https://docs.socket.dev/ | New window External Subdomain | Read the docs |
https://www.linkedin.com/feed/... | External Subdomain | Scott Roberts |
https://twitter.com/bcrypt/sta... | External | Yan Zhu |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://www.linkedin.com/posts... | External Subdomain | Andrew Peterson |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://www.linkedin.com/in/fe... | External Subdomain | Feross Aboukhadijeh |
https://twitter.com/naugtur/st... | External | Zbyszek Tenerowicz |
https://socket.dev/ | Text duplicate | socket.dev |
https://twitter.com/frgx/statu... | External | Devdatta Akhawe |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://twitter.com/sebasbensu... | External | Sebastian Bensusan |
https://twitter.com/adam_baldw... | External | Adam Baldwin |
https://twitter.com/SocketSecu... | External Text duplicate | @SocketSecurity |
https://www.linkedin.com/posts... | External Subdomain | Nico Waisman |
https://www.linkedin.com/in/na... | External Subdomain Text duplicate | Nat Friedman |
https://www.linkedin.com/in/fe... | External Subdomain Text duplicate | Feross Aboukhadijeh |
https://socket.dev/love | | Even more security team love → |
https://socket.dev/demo | Text duplicate | Book a Demo |
https://socket.dev/blog | New window | Read the blog |
https://socket.dev/github-app | Text duplicate | Install GitHub App |
https://socket.dev/demo | New window Text duplicate | Book a Demo |
/blog/oss-maintainers-demand-a... | | Open Source Maintainers Demand Ability to Block Copilot-Generated Issues and PRs |
/blog/malicious-koishi-chatbot... | | Malicious Koishi Chatbot Plugin Exfiltrates Messages Triggered by 8-Character Hex Strings |
/blog/malicious-checker-packag... | | Malicious ‘Checker’ Packages on PyPI Probe TikTok and Instagram for Valid Accounts |
https://socket.dev/blog | | View all articles → |
https://socket.dev/ | Text duplicate | IMG-ALT Socket |
https://socket.dev/security | | IMG-ALT Socket SOC 2 Logo |
https://socket.dev/alerts | | Package Alerts |
https://socket.dev/integrations | | Integrations |
https://docs.socket.dev/ | External Subdomain Text duplicate | Docs |
https://socket.dev/pricing | Text duplicate | Pricing |
https://socket.dev/faq | | FAQ |
https://feedback.socket.dev/ | External Subdomain | Roadmap |
https://socket.dev/changelog | | Changelog |
https://socket.dev/about | | About |
https://socket.dev/love | Text duplicate | Love |
https://socket.dev/blog | | Blog |
https://socket.dev/glossary | | Glossary |
https://discord.gg/JkhgPpXDSd | External | Discord Community |
https://socket.dev/careers | | CareersHiring |
https://feedback.socket.dev/ | External Subdomain | Send Feedback |
https://socket.dev/contact | | Contact Us |
https://status.socket.dev/ | External Subdomain | System Status |
https://socket.dev/npm | | Directory A-TITLE npm Package Directory |
https://socket.dev/npm/category | | Explore A-TITLE Explore npm Packages |
/npm/randompackage | | Random Package A-TITLE Random npm Package |
/npm/category/popular | | Most Popular A-TITLE Most Popular npm Packages |
/npm/category/popular-maintainers | | Top Maintainers A-TITLE Top JavaScript Maintainers |
/npm/category/removed | | Removed Packages A-TITLE Removed npm Packages |
https://socket.dev/go | Text duplicate | Directory A-TITLE Go Package Directory |
https://socket.dev/go/category | Text duplicate | Explore A-TITLE Explore Go Packages |
/go/randompackage | Text duplicate | Random Package A-TITLE Random Go Package |
https://socket.dev/maven | Text duplicate | Directory A-TITLE Maven Package Directory |
https://socket.dev/maven/category | Text duplicate | Explore A-TITLE Explore Maven Packages |
/maven/randompackage | Text duplicate | Random Package A-TITLE Random Maven Package |
https://socket.dev/nuget | Text duplicate | Directory A-TITLE NuGet Package Directory |
https://socket.dev/nuget/category | Text duplicate | Explore A-TITLE Explore NuGet Packages |
/nuget/randompackage | Text duplicate | Random Package A-TITLE Random NuGet Package |
https://socket.dev/pypi | Text duplicate | Directory A-TITLE PyPI Package Directory |
https://socket.dev/pypi/category | Text duplicate | Explore A-TITLE Explore PyPI Packages |
/pypi/randompackage | Text duplicate | Random Package A-TITLE Random PyPI Package |
https://socket.dev/rubygems | Text duplicate | Directory A-TITLE Rubygems Package Directory |
/rubygems/category | Text duplicate | Explore A-TITLE Explore Rubygems Packages |
/rubygems/randompackage | Text duplicate | Random Package A-TITLE Random Rubygems Package |
https://twitter.com/SocketSecu... | External | No Text |
https://github.com/SocketDev | External | No Text |
https://www.linkedin.com/compa... | External Subdomain | No Text |
https://discord.gg/JkhgPpXDSd | External | No Text |
https://socket.dev/terms | | Terms |
https://socket.dev/privacy | | Privacy |
https://socket.dev/security | | Security |
(Nice to have)