
Research
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
@appbaseio/reactivesearch-native
Advanced tools
Native data components for building reactive UIs with Elasticsearch
Elasticsearch UI components for React Native. Website 🌐
Read the launch blog post here.
npm install @appbaseio/reactivesearch-native
and the quickstart guide.
Building a meaningful data-driven mobile app with React Native today takes anywhere between weeks to months.
ReactiveSearch is built with the aim of bringing down the development lifecycle of a data-driven app to days.
ReactiveSearch offers cross-platform UI components that work not only for iOS and Android, but also for the web. These UI components can further directly talk to an Elasticsearch backend with a ReactiveBase
backend provider component.
Much like how Bootstrap and Materialize provide scaffolding to build styles for your website, ReactiveSearch provides scaffolding to build data-driven apps.
A sneak peek of the UI components.
💎 Get the iOS and Android designer templates for sketch.
Run this example app with Snack Editor to see ReactiveSearch in action.
Tutorials
We have published the following apps to the App Store / Playstore.
We welcome contributions in the form of issues, PRs. Please read the contribution guide.
The simplest way to debug the app is using React Native Debugger. If you are having trouble running your react native app and are seeing any dependency warnings, reset cache via
watchman watch-del-all
yarn start --reset-cache
FAQs
Native data components for building reactive UIs with Elasticsearch
The npm package @appbaseio/reactivesearch-native receives a total of 10 weekly downloads. As such, @appbaseio/reactivesearch-native popularity was classified as not popular.
We found that @appbaseio/reactivesearch-native demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
Security News
pip, PDM, pip-audit, and the packaging library are already adding support for Python’s new lock file format.
Product
Socket's Go support is now generally available, bringing automatic scanning and deep code analysis to all users with Go projects.