
Research
Malicious fezbox npm Package Steals Browser Passwords from Cookies via Innovative QR Code Steganographic Technique
A malicious package uses a QR code as steganography in an innovative technique.
pui-css-hoverable
Advanced tools
A CSS hoverable component that can be installed via this npm package. This package provides all of the CSS you need to use the component.
To install the package from the command line:
npm install pui-css-hoverable
<ul class="list-group" hoverable-group="true">
<li class="list-group-item" hoverable="true">
List Item 1
<a class="hovered" href="#">Edit</a>
</li>
<li class="list-group-item" hoverable="true">
List Item 2
<a class="hovered" href="#">Edit</a>
</li>
<li class="list-group-item" hoverable="true">
List Item 3
<a class="hovered" href="#">Edit</a>
</li>
<li class="list-group-item">
Not hoverable
</li>
</ul>
You can find more examples of the hoverable component in the pui style guide
This is a component of Pivotal UI, a collection of React and CSS components for rapidly building and prototyping UIs.
(c) Copyright 2017 Pivotal Software, Inc. All Rights Reserved.
FAQs
hoverable css component for Pivotal UI based on Bootstrap
The npm package pui-css-hoverable receives a total of 2 weekly downloads. As such, pui-css-hoverable popularity was classified as not popular.
We found that pui-css-hoverable demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 21 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.
Application Security
/Research
/Security News
Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.