
Research
Security News
Malicious npm Package Wipes Codebases with Remote Trigger
A malicious npm typosquat uses remote commands to silently delete entire project directories after a single mistyped install.
= rugroupy
rugroupy is a ruby library which interacts with mongodb allowing one to tag entities and perform queries to determine similarity between entities. rugroupy finds similarities by performing a series of map-reduce operations using mongo. By using mongo's auto sharding capabilities rugroupy's grouping operation can be distributed between multiple servers.
== features
== Examples
See http://github.com/rwynn/rugroupy/tree/master/test
== Requirements
== Install
== Install from the GitHub source
The source code is available at http://github.com/rwynn/rugroupy. You can either clone the git repository or download a tarball or zip file. Once you have the source, you can use it from wherever you downloaded it or you can install it as a gem from the source by typing
== Contributing to rugroupy
== Copyright
Copyright (c) 2011 Ryan Wynn. See LICENSE.txt for further details.
FAQs
Unknown package
We found that rugroupy demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A malicious npm typosquat uses remote commands to silently delete entire project directories after a single mistyped install.
Research
Security News
Malicious PyPI package semantic-types steals Solana private keys via transitive dependency installs using monkey patching and blockchain exfiltration.
Security News
New CNA status enables OpenJS Foundation to assign CVEs for security vulnerabilities in projects like ESLint, Fastify, Electron, and others, while leaving disclosure responsibility with individual maintainers.