
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
This theme was created on top of Jekyll Clean theme by Scotte, you can view the original version in action on his blog.
This theme uses some parts of Twitter Bootstrap, which allows it to look nice on a mobile devices using a collapsable nav bar and hiding the sidebar.
Optionally you can use:
All these features could be set up in _config.yml
. Also you can have social icons which could lead to your social profiles. It uses font-awesome, so you can have any icon you want to any social profile. Out-of-the box it has: LinkedIn, GitHub, StackOverflow, LastFm, Instagram. And you can easily add more by adding new style in theme.css
and setting it in _config.yml
.
If you dont't have your own blog you can clone this repository and put your articles in a _posts
folder.
If you already have your own blog then I think you can clone this repository and copy-paste content keeping your _posts
folder.
After you will have to set up your _config.yml
To use this feature you simply will need to create a markdown file for each tag which you are using in you site in tag folder. To simplify this procedure there is an /admin page, which outputs the bash command which you just need to run inside tag folder of your site. Also don't forget to rerun it when you add a post with new tag.
The content of this theme is distributed and licensed under a Creative Commons Attribution 4.0 License
This license lets others distribute, remix, tweak, and build upon your work,
even commercially, as long as they credit you for the original creation. This
is the most accommodating of licenses offered. Recommended for maximum
dissemination and use of licensed materials.
In other words: you can do anything you want with this theme on any site, just please provide a link to the original theme on github.
This theme includes the following files which are the properties of their respective owners:
FAQs
Unknown package
We found that jekyll-clean-dark demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.