Research
Security News
Threat Actor Exposes Playbook for Exploiting npm to Build Blockchain-Powered Botnets
A threat actor's playbook for exploiting the npm ecosystem was exposed on the dark web, detailing how to build a blockchain-powered botnet.
@beisen/nade-style
Advanced tools
相比于之前的图标图改动的点:
将图标库从前端版本中拆分出来,不打包在项目的main.css中,由后端输出单独css文件到承载页中
删掉了原有多余文件,且将图标源文件dist目录改为static
添加图标后,执行npm run build-prod,生成压缩文件
http://gitlab.beisencorp.com/ux-platform-ui/ux-platform-static-config/tree/develop/ux-na-de-style
在该地址的develop分支修改样式文件对应的版本号(ci生成的版本号http://jci.beisencorp.com/job/ux-na-de-style-js/),一定是develop分支
需要有ci下该项目http://jci.beisencorp.com/job/ux-na-de-style-js/ 的权限,点击构建即可将开发环境修改的版本同步到测试环境
目前pc仍然是发包后应用该图标,后续会修改该方式 相比
移动端则需要修改配置文件,且由于目前图标库的icon字体是随机生成的,因此输出到承载页上旧版本可能会图标显示错误,
目前处理方式为后端作兼容,移动端版本在1.32及以上才将图标库拆出来,之前的版本还是打在前端版本中
FAQs
TalentUI project template
We found that @beisen/nade-style demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A threat actor's playbook for exploiting the npm ecosystem was exposed on the dark web, detailing how to build a blockchain-powered botnet.
Security News
NVD’s backlog surpasses 20,000 CVEs as analysis slows and NIST announces new system updates to address ongoing delays.
Security News
Research
A malicious npm package disguised as a WhatsApp client is exploiting authentication flows with a remote kill switch to exfiltrate data and destroy files.