
Research
/Security News
10 npm Typosquatted Packages Deploy Multi-Stage Credential Harvester
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.
@teamleader/ui-illustrations
Advanced tools
Illustrations used in the Teamleader application(s), both as SVG and matching React-based implementation.
Teamleader's illustrations package is available on npm.
$ npm install --save @teamleader/ui-illustrations
or
$ yarn install @teamleader/ui-illustrations
If you're already using teamleader-ui in your application, you can access the illustrations using the sub-repo notation '@teamleader-ui/illustrations'.
import React from 'react';
import { render } from 'react-dom';
import { IllustrationEmptyStateMeetings120x120Static } from '@teamleader/ui-illustrations';
const App = () => {
return (
<IllustrationEmptyStateMeetings120x120Static />
);
}
render(<App />, document.querySelector('#app'));
^12.0.0^6.9.0Clone this repo
$ git clone https://github.com/teamleadercrm/ui-illustrations.git
Add your newly designed SVG files to the /illustrations folder. Make sure they are named properly using the dimensions_name_variant.svg syntax, eg: 120x120_empty_state_meeting_static.svg or 240x240_task_list_dynamic.svg.
Don't forget to transform your newly added SVGs to React components by running
$ npm run build
If you are satisfied with your updates, make sure to bump the version number in the package.json file and publish it for others to use by running
$ npm publish --access=public
[1.23.0] - 2023-12-05
FAQs
Teamleader UI Illustrations
The npm package @teamleader/ui-illustrations receives a total of 142 weekly downloads. As such, @teamleader/ui-illustrations popularity was classified as not popular.
We found that @teamleader/ui-illustrations demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 12 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.

Product
Socket Firewall Enterprise is now available with flexible deployment, configurable policies, and expanded language support.

Security News
Open source dashboard CNAPulse tracks CVE Numbering Authorities’ publishing activity, highlighting trends and transparency across the CVE ecosystem.