
Research
/Security News
9 Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.
@mui/lab
Advanced tools
This package hosts the incubator components that are not yet ready to move to core.
Install the package in your project directory with:
npm install @mui/lab@^6.0.0-beta
The lab has peer dependencies on the Material Design components and on the Emotion library. If you are not already using them in your project, you can install with:
npm install @mui/material@^6.0.0 @emotion/react @emotion/styled
If you wish to use the latest version, remove the @^6.0.0 suffix.
Visit https://v6.mui.com/material-ui/about-the-lab/ to view the full documentation.
Ant Design (antd) is a design system with a set of high-quality React components. It offers similar functionalities to @mui/lab, such as date pickers and timelines, but with a different design philosophy inspired by Ant Design.
React Bootstrap provides Bootstrap components built with React. While it does not offer as many experimental components as @mui/lab, it does provide a set of stable, well-tested components that can be used to build complex UIs.
Blueprint is a React-based UI toolkit for the web. It is similar to @mui/lab in that it offers a range of components, including date and time pickers, but it is designed primarily for building complex data-dense interfaces for desktop applications.
FAQs
Laboratory for new Material UI modules.
The npm package @mui/lab receives a total of 1,798,104 weekly downloads. As such, @mui/lab popularity was classified as popular.
We found that @mui/lab demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 10 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.

Security News
Learn the essential steps every developer should take to stay secure on npm and reduce exposure to supply chain attacks.