data:image/s3,"s3://crabby-images/7e228/7e2287ba60e21dee87416ea9983ec241b5307ec2" alt="vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance"
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
github.com/igo9go/beego-blog
#beego-blog
使用beego框架创建的博客系统
http://go-blog.igo9go.cn ###安装
安装go开发环境
mac 直接下载安装 https://storage.googleapis.com/golang/go1.7.3.darwin-amd64.pkg
linux
wget https://storage.googleapis.com/golang/go1.7.3.linux-amd64.tar.gz
解压 tar -zxf go1.7.3.linux-amd64.tar.gz ,放到合适的位置
修改 etc/profile 文件在文件后加入 export的几行,在unset下面直接加,不要有空行
然后执行 source /etc/profile 刷新配置文件
运行命令 go 测试go是否安装成功
go get github.com/astaxie/beego
go get github.com/beego/bee
go get igo9go/beego-blog
cd $GOPATH/src/igo9go/beego-blog
数据库初始化,配置文件修改
bee run
访问
后台 http://127.0.0.1:8080/admin
账号:admin 密码:admin
部署 后台启动守护进程nohup ./blog &(可以使用supervisor) nginx代理8080端口
server {
listen 80;
server_name go-blog.igo9go.cn;
charset utf-8;
access_log /tmp/beego.access.log;
location /(css|js|fonts|img)/ {
access_log off;
expires 1d;
root "/data/goproject/src/static";
}
location / {
proxy_set_header X-Forwarded-For $remote_addr;
proxy_set_header Host $http_host;
proxy_pass http://127.0.0.1:8080;
}
}
FAQs
Unknown package
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.