senooken JP Social
  • FAQ
  • Login
senooken JP Socialはsenookenの専用分散SNSです。
  • Public

    • Public
    • Network
    • Groups
    • Popular
    • People

Conversation

Notices

  1. jomo (jomo@mstdn.io)'s status on Tuesday, 27-Nov-2018 03:34:49 JST jomo jomo

    An NPM package with 2,000,000 weekly downloads had malicious code injected into it. No one knows what the malicious code does yet.

    (via ?gerybernhardt)

    https://github.com/dominictarr/event-stream/issues/116

    In conversation Tuesday, 27-Nov-2018 03:34:49 JST from mstdn.io permalink

    Attachments

    1. I don't know what to say. · Issue #116 · dominictarr/event-stream
      from GitHub
      @dominictarr Why was @right9ctrl given access to this repo? He added flatmap-stream which is entirely (1 commit to the repo but has 3 versions, the latest one removes the injection, unmaintained, c...
    • tateisu​ :force:​:r_9a: and zunda ? nはおまけ :green_dango: repeated this.

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

senooken JP Social is a social network, courtesy of senooken. It runs on GNU social, version 2.0.2-beta0, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All senooken JP Social content and data are available under the Creative Commons Attribution 3.0 license.