
Research
NPM targeted by malware campaign mimicking familiar library names
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
lightbox-alex-react
Advanced tools
Touch friendly lightbox gallery for react
If you have any requests post an issue on github and I'll do my best
npm install --save lightbox-alex-react
yarn add --save lightbox-alex-react
import React, { Component } from 'react'
import Gallery from 'lightbox-alex-react'
const pictures = ['url1', '/path/to/image.jpg']
const mixed = ['url1', '/path/to/image.jpg', 'urlVideo', '/path/to/video.mp4']
class Example extends Component {
render () {
return (
<Gallery files={pictures} thumbnails={thumbnails} />
<Gallery files={mixed} />
)
}
}
props = {
files: proptypes.array, // array of src of full res pictures / videos
thumbnails: proptypes.array, // (optional) array of src of thumbnails (for each picture), if not the default one is used
tmbClasses: proptypes.string, // (optional) classes to apply to the thumbnails
galleryClasses: proptypes.string // (optional) classes to apply to the gallery
}
If optional prop is not passed, default value is used
MIT © Aleksandar Gjoreski
FAQs
Touch friendly lightbox gallery for react
The npm package lightbox-alex-react receives a total of 18 weekly downloads. As such, lightbox-alex-react popularity was classified as not popular.
We found that lightbox-alex-react demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
Research
Socket's research uncovers three dangerous Go modules that contain obfuscated disk-wiping malware, threatening complete data loss.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.