
Research
/Security News
TensorLake npm SDK Compromised in ChainDrop Shai-Hulud Credential-Stealing Attack
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.
sl-generator
Advanced tools
SL应用生成器
首先确保你已经安装了 Node.js ,然后,请执行以下命令:
npm install -g sl-generator
const generator = require('sl-generator')
// 初始化 igroot 应用
generator.init('new project name')
// 新增模板与组件
generator.add('page name', 'component name')
# 生成初始项目模板
sl-generator init [name]
##################################################################
# 注意:以下命令的执行依赖于当前路径,因此,请在项目根目录中使用 #
##################################################################
# 生成页面
sl-generator add -p [name]
# 生成组件
sl-generator add -c [name]
FAQs
sl 应用生成器
The npm package sl-generator receives a total of 1 weekly downloads. As such, sl-generator popularity was classified as not popular.
We found that sl-generator demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.