
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
@graphistry/timebar
Advanced tools
This is a simple react component which renders a histogram as prepared by the graphistry server.
To see this run, type npm install && npm run dev
and it should open in your browser.
It takes four props:
bins
is a normalized set of bins. See example/app.js
to see how bins are set.onSelect
is fired every time the component's selection changes. The payload is an array of selected bins. Again, see example/app.js
to see it work.onZoom
is fired every time the user uses the scrollwheel/two-finger-touch on the timebar. It actually gets the zoom event, and one outstanding unit of work is to wire up that event to our falcor server.onHighlight
is fired every time the user mouses over or out of a bar. It is called with the bin index to highlight.Currently there's an issue with react versions when using this in viz-app.
To use in viz-app, make sure vizapp/packages/viz-app/package.json
has the correct version for @graphistry/timebar
. You'll find the timebar component wired up in /viz-app/packages/viz-app/src/containers/timebar/components/timebar.js
. The onZoom
, onSelect
and onHighlight
functions are wired up.
The problem right now is that the selection area when you click+drag isn't mapping to actual position because the way that I'm getting bounds (in src/index.js
in this repo, tagged with a comment at the top) seems to be breaking in viz-app (I think due to version mismatch).
FAQs
A timebar component for the graphistry experience
The npm package @graphistry/timebar receives a total of 6 weekly downloads. As such, @graphistry/timebar popularity was classified as not popular.
We found that @graphistry/timebar demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 7 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.