OK, who decided that in
```
for (const index in array) {...}
```
index should be a string and not an number?
OK, who decided that in
```
for (const index in array) {...}
```
index should be a string and not an number?
Proposal—Shift Node.js to Annual Major Releases and Shorten LTS Duration, by @rafaelgss.dev:
A technical overview of Node.js versions 22, 23, and 24 detailing key ECMAScript updates, native Web APIs, performance enhancements, and security improvements. https://hackernoon.com/nodejs-is-growing-up-3-major-releases-that-changed-the-game #nodejs
Supply chain attack alert: A threat actor gained access to Toptal's GitHub org, making 73 repos public and injecting malicious payloads into 10+ npm packages.
Full research: https://socket.dev/blog/toptal-s-github-organization-hijacked-10-malicious-packages-published #NodeJS #JavaScript
New Threat Research: We uncovered 4 malicious packages (3 on npm, 1 on PyPI) with 56,000+ downloads, all delivering surveillance malware capable of keylogging, screen capture, and webcam access.
Here’s what we found: https://socket.dev/blog/surveillance-malware-hidden-in-npm-and-pypi-packages #NodeJS #JavaScript #Python
Mastodon v4.3.10 veröffentlicht.
• Abhängigkeiten aktualisiert.
• Datenbank-Backups vor Updates empfohlen.
• `charlock_holmes` Gem-Build-Problem mit `gcc` möglich.
Attackers have hijacked the npm 'is' package (~2.8M weekly downloads), adding a malicious JS loader. This compromise is linked to the recent npm phishing campaign. Read our update on this ongoing supply chain attack:
https://socket.dev/blog/npm-is-package-hijacked-in-expanding-supply-chain-attack #NodeJS #JavaScript
A critical vulnerability in the widely used npm form-data package could allow HTTP Parameter Pollution, potentially impacting millions of projects. The package sees 100M+ downloads weekly.
Details → https://socket.dev/blog/critical-vulnerability-in-popular-npm-form-data-package #NodeJS #JavaScript
Bun 1.2.19 introduces isolated installs for monorepos, smarter package management, and 5x faster Bun.sql.
Congrats to @jarredsumner and all the @bunjavascript contributors: https://socket.dev/blog/bun-1-2-19-adds-isolated-installs-for-better-monorepo-support #NodeJS
Is Node.js really as slow as it has been portrayed by competitors? https://hackernoon.com/myth-vs-reality-real-world-runtime-performance-of-nodejs-deno-and-bun #nodejs
"Hours after we reported on the npm phishing campaign using the typosquatted npnjs.com site, we’re now seeing the first major fallout: popular npm packages, including eslint-config-prettier and eslint-plugin-prettier, were compromised" #eslint #npm #nodejs
https://socket.dev/blog/npm-phishing-campaign-leads-to-prettier-tooling-packages-compromise
How to Install #Directus on #AlmaLinux #VPS
Here's a step-by-step guide detailing how to install Directus on AlmaLinux VPS.
What is Directus?
Directus is an open-source #headless #CMS and data platform that allows you to manage and interact with your database through a RESTful API or GraphQL API. It provides a modern, user-friendly admin interface for ...
Continued https://blog.radwebhosting.com/how-to-install-directus-on-almalinux-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #selfhosting #selfhosted #npm #installguide #vpsguide #postgresql #letsencrypt #cmsapps #nodejs
How to Install #Directus on #AlmaLinux #VPS
Here's a step-by-step guide detailing how to install Directus on AlmaLinux VPS.
What is Directus?
Directus is an open-source #headless #CMS and data platform that allows you to manage and interact with your database through a RESTful API or GraphQL API. It provides a modern, user-friendly admin interface for ...
Continued https://blog.radwebhosting.com/how-to-install-directus-on-almalinux-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #letsencrypt #selfhosted #selfhosting #vpsguide #installguide #cmsapps #nodejs #postgresql #npm
Middle of the month chapters. You can find them following the link:
https://www.ivanmoreno.art/portraits/jul/10/
or
How to Install #PeerTube on #Ubuntu VPS
This article provides an in-depth guide demonstrating how to install PeerTube on Ubuntu VPS.
What is PeerTube?
PeerTube is a decentralized, federated video hosting platform powered by WebTorrent and ActivityPub. It enables users to self-host video services and interact with other PeerTube ...
Continued https://blog.radwebhosting.com/how-to-install-peertube-on-ubuntu-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #fediverse #opensource #selfhosted #installguide #nodejs #videostreaming #letsencrypt #selfhosting #vpsguide #decentralized
Pues ayer después de algunas recomendaciones que me hicistéis por aquí. Me monté un nodo de Navidrome en mi Proxmox y lo estuve probando. Va bastante bien, la última vez que probé algo con Subsonic no fue muy bien.
Total, que ayer monté una APP en #NodeJS para descargar discos directamente de Youtube Music (que para algo que sirve, que sea para descargar) y de momento con poner enlaces de discos se descarga la musica!
Active supply chain attack on npm:
Multiple Prettier tooling packages were compromised through the phishing campaign we published about just hours ago. Watch out for more compromised accounts and malicious packages.
Follow-up: https://socket.dev/blog/npm-phishing-campaign-leads-to-prettier-tooling-packages-compromise #nodejs #npm
npm phishing alert!
Attackers are sending emails from spoofed support@npmjs.org addresses linking to a typosquatted clone site (npnjs.com) to steal credentials. This attack is designed to hijack npm accounts.
https://socket.dev/blog/npm-phishing-email-targets-developers-with-typosquatted-domain #nodejs #JavaScript