1. X
  2. Feross
Log inSign up
Feross
Socket
29K posts
Feross profile banner
user avatar

Feross

Socket
@feross
⚡️ Founder + CEO @SocketSecurity (socket.dev) • 🌲 Visiting lecturer @Stanford (cs253.stanford.edu) • ❤️ Open source @WebTorrentApp + @StandardJS
Stanford, CA
feross.org
Joined August 2008
1,663
Following
41.2K
Followers
RepliesRepliesArticlesArticlesMediaMedia
  • Pinned
    user avatar
    Feross
    Socket
    @feross
    Aug 4
    🚨 Active supply chain attack on npm: keyv and cacheable are compromised right now, and the payload is a worm. The maintainer account behind both package families was compromised. On August 4, ten packages were republished with a malicious preinstall hook that steals your
    Image
    Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
    From socket.dev
  • user avatar
    Feross
    Socket
    @feross
    Aug 13
    AI agents now choose, install, and run code with developer credentials, often with no human in the loop. 25 years of security infrastructure assumes a human makes those decisions. That assumption is breaking. Malicious packages on public registries: 55K in 2022, nearly 500K in
    Image
    The Agent Attack Surface: Why AI Is Breaking Software Security As We Know It | Socket
    From youtube.com
  • user avatar
    Feross
    Socket
    @feross
    Aug 12
    Socket's Business plan is now free for open source projects. Attackers took over a maintainer account and pushed malware into keyv and cacheable, packages with tens of millions of weekly downloads. Maintainers are the attack surface now. Any public OSI-licensed project gets
    Image
    Free Business Plan Upgrades for Open Source Maintainers
    From socket.dev
  • user avatar
    Feross
    Socket
    @feross
    Aug 12
    🚨 737 malicious VPN extensions in the Chrome Web Store. 516 are still live with 58,318 installs. They impersonate Proton, NordVPN, and Cloudflare's 1.1.1.1, then route all browser traffic through the operator's proxies. Check yours:
    Image
    737 Chrome VPN Extensions Linked to Brand Impersonation and Browser Traffic Redirection
    From socket.dev
  • user avatar
    Feross
    Socket
    @feross
    Aug 4
    🚀 Socket is now available in the AWS Security Hub Extended plan. For AWS customers, that means you can apply committed AWS spend toward @SocketSecurity, move seats up or down month to month, and consolidate billing with the rest of your security stack. The first month is free.
    Image
    AWS Security Hub Adds Socket for Supply Chain Security
    From socket.dev

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Advertisement
Advertisement