
Research
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
react-email-autocomplete
Advanced tools
An autocomplete React component for email fields inspired by Auto-Email
JQuery plugin.
Here you can see component demo and functionality.
To use this component, you should install it by npm:
npm install react-email-autocomplete --save-dev
And then use the component like bellow example(Bootstrap control):
import React, { Component } from 'react';
import Email from 'react-email-autocomplete';
class App extends Component {
render() {
return (
<div className="form-group">
<label htmlFor="eac-input">Email address</label>
<Email className="form-control" placeholder="Enter email"/>
</div>
)
}
}
export default App;
Also you can pass a list as your custom domains:
class App extends Component {
render() {
const customDomains = ['yourdomain.com', 'yourdomain2.com', 'gmail.com', 'yahoo.com']
return (
<div className="form-group">
<label htmlFor="eac-input">Email address</label>
<Email className="form-control" placeholder="Enter email" domains={customDomains}/>
</div>
)
}
}
If you want to use it with Formik you just need to add the onChange prop
class App extends Component {
render() {
return (
<div className="form-group">
<label htmlFor="eac-input">Email address</label>
<Formik>
{(props) => {
const {
handleSubmit,
handleBlur,
} = props;
return (
<form onSubmit={handleSubmit}>
<Email
onBlur={handleBlur}
name="email"
value={values.email}
onChange={handleChange} //The Formik custom onChange
/>
</form>
);
}}
</Formik>
</div>
)
}
This software is released under the MIT License
.
FAQs
Autocomplete React component for email fields
The npm package react-email-autocomplete receives a total of 410 weekly downloads. As such, react-email-autocomplete popularity was classified as not popular.
We found that react-email-autocomplete demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
Security News
pip, PDM, pip-audit, and the packaging library are already adding support for Python’s new lock file format.
Product
Socket's Go support is now generally available, bringing automatic scanning and deep code analysis to all users with Go projects.