Firat, Interesting tool. How do you handle the “known compromised artifacts only” limitation? It seems like the hard part is unknown or lightly modified malicious packages—does LibKill do anything beyond matching known indicators? :-)
LibKill: Scan Your Machine for Compromised npm, pip, and Bun Packages
7 Comments
@[James Dayal] Thanks James. so basically I build this for knowing issues and I'm working on automation system to get issues on github and add possible future issues add into list.
beside of that " It seems like the hard part is unknown or lightly modified malicious packages" that's correct! which need to think about this. I have some ideas but it should be took lots of time.
If you have any idea or way to find it , your welcome to add your ideas since its opensource!
Please log in to add a comment.
Very cool tool. Unfortunately, it didn't work on my Macbook (Silicon M series chip). I assume it's not compatible with all archs? The error suggests the darwin-arm64 version does not exist.
curl -fsSL https://raw.githubusercontent.com/firfircelik/libkill/main/install.sh | bash
LibKill Installer
Supply-chain compromise scanner and cleaner
Downloading libkill-darwin-arm64...
curl: (56) The requested URL returned error: 404
ndouglas@Nigels-MacBook-Pro Desktop %
@[Nigel Douglas] all fixed my friend. there was an issue with release which I fix it.
firat@Firat-Mac-mini ~ % curl -fsSL https://raw.githubusercontent.com/firfircelik/libkill/main/install.sh | bash
LibKill Installer
Supply-chain compromise scanner and cleaner
Downloading libkill-darwin-arm64...
Installed: /Users/firat/.local/bin/libkill
Run 'libkill scan' to scan your system.
Run 'libkill install' to set up auto-scanning daemon.
Please log in to add a comment.
Please log in to comment on this post.
More Posts
- © 2026 Coder Legion
- Feedback / Bug
- Privacy
- About Us
- Contacts
- Premium Subscription
- Terms of Service
- Refund
- Early Builders
More From firatcelik
Related Jobs
- Machine Learning EngineersJobs for Humanity · Full time · San Jose, CA
- US|Machine Learning Engineer VSamprasoft · Full time · Houston, TX
- Machine Learning EngineerBrahma Consulting Group · Full time · Hayward, CA
Commenters (This Week)
Contribute meaningful comments to climb the leaderboard and earn badges!