1. X
  2. Socket
Log inSign up
Socket
3,231 posts
Image
user avatar
Socket
@SocketSecurity
Socket is the #1 software supply chain security platform. Next-gen SCA + SBOM + 0-day prevention. LOVED BY DEVELOPERS. 👀 @npm_malware
https://socket.dev/careers
socket.dev
Joined November 2021
4,606
Following
21.7K
Followers
AffiliatesAffiliatesRepliesRepliesMediaMedia

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
  • Pinned
    user avatar
    Socket
    @SocketSecurity
    May 22
    Today is a big day for Socket.
    user avatar
    Feross
    Socket
    @feross
    May 20
    Today is a big day for @SocketSecurity. We just raised a $60M Series C at a $1B valuation, led by @ThriveCapital with participation from @a16z, @AbstractVC, and @CapitalOne Ventures. Total funding is now $125M. Four years ago, we started Socket because open source dependencies
    Image
    27K027K
  • user avatar
    Socket
    @SocketSecurity
    Jul 17
    The White House launched a new initiative to coordinate AI-discovered vulnerabilities across government, critical infrastructure, and open source. No operating plan is public yet, even as federal vulnerability programs face massive backlogs and failures.
    The White House’s Gold Eagle Initiative aims to coordinate AI-discovered vulnerabilities, validate findings, and accelerate patching across critical s...
    White House Launches Gold Eagle Initiative to Manage Surge i...
    From socket.dev
    3.2K03.2K
  • Socket reposted
    user avatar
    Feross
    Socket
    @feross
    Jul 17
    I'm so proud of this partnership with @Replit and the massive number of developers that we're protecting every day. 8,000 malicious packages blocked per day for Replit developers!
    user avatar
    Replit ⠕
    @Replit
    Jul 17
    Blocking the bad and removing the noise. Our @SocketSecurity partnership blocks ~8,000 malicious packages a day and filters out 30% of false-positive critical vulnerability alerts, the ones that were never exploitable. We focus on security so you can focus on building.
    3.9K03.9K
  • Socket reposted
    user avatar
    Replit ⠕
    @Replit
    Jul 17
    Blocking the bad and removing the noise. Our @SocketSecurity partnership blocks ~8,000 malicious packages a day and filters out 30% of false-positive critical vulnerability alerts, the ones that were never exploitable. We focus on security so you can focus on building.
    user avatar
    Replit ⠕
    @Replit
    Jun 10
    Replying to @Replit
    Package Firewall is now enabled by default for every builder on Replit as part of Replit Auto-Protect And its already stopping ~8,000 malicious installs per day on Replit Read more at: replit.com/blog/package-f…
    32K032K
  • user avatar
    Socket
    @SocketSecurity
    Jul 16
    Shai-Hulud's downstream impact is still coming to light. The worm hit tens of thousands of GitHub repos, and the latest breach is Suno, whose leaked source code shows how it scraped YouTube, Deezer, and Genius. 🎩 First reported by @404mediaco.
    A Shai-Hulud infection exposed Suno's source code, which shows the AI music startup stream-ripped tracks to train its models.
    Suno Breached via Shai-Hulud Worm, Leaked Code Exposes AI Mu...
    From socket.dev
    3.9K03.9K
  • Socket reposted
    user avatar
    Socket
    @SocketSecurity
    Jul 16
    LLM-assisted vulnerability discovery is raising patch volume across the industry and changing how projects ship security fixes. Next.js is the latest to respond, moving to scheduled monthly releases starting July 20.
    Vercel is formalizing a monthly release program for Next.js. The change follows React2Shell and a sharp rise in AI-assisted vulnerability discovery.
    Next.js moves to scheduled security releases - Socket
    From socket.dev
    5.2K05.2K
  • user avatar
    Socket
    @SocketSecurity
    Jul 16
    LLM-assisted vulnerability discovery is raising patch volume across the industry and changing how projects ship security fixes. Next.js is the latest to respond, moving to scheduled monthly releases starting July 20.
    Vercel is formalizing a monthly release program for Next.js. The change follows React2Shell and a sharp rise in AI-assisted vulnerability discovery.
    Next.js moves to scheduled security releases - Socket
    From socket.dev
    5.2K05.2K
  • Socket reposted
    user avatar
    Socket
    @SocketSecurity
    Jul 14
    🎮 11 malicious NuGet tools posed as game cheats to deliver Windows malware that used Google Sheets to track hosts and enforce a remote ban list. Three of the payloads also let Telegram users remotely capture and receive screenshots from the host.
    11 malicious NuGet tools pose as game cheats to deploy Windows payloads, track hosts, and use Google Sheets for telemetry and control.
    11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windo...
    From socket.dev
    3.7K03.7K
  • user avatar
    Socket
    @SocketSecurity
    Jul 14
    🎮 11 malicious NuGet tools posed as game cheats to deliver Windows malware that used Google Sheets to track hosts and enforce a remote ban list. Three of the payloads also let Telegram users remotely capture and receive screenshots from the host.
    11 malicious NuGet tools pose as game cheats to deploy Windows payloads, track hosts, and use Google Sheets for telemetry and control.
    11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windo...
    From socket.dev
    3.7K03.7K
  • Socket reposted
    user avatar
    Feross
    Socket
    @feross
    Jul 14
    🚨 Active supply chain attack on AsyncAPI. Five malicious @​asyncapi packages were published to npm today, shipped through the project's own GitHub Actions trusted publishing pipeline after an attacker poisoned a commit on the next branch. Affected versions:
    3 compromised asyncapi packages deliver miasma botnet loader on macOS, Linux and Windows.
    Compromised npm Packages in the AsyncAPI Namespace Deliver M...
    From socket.dev
    61K061K
  • user avatar
    Socket
    @SocketSecurity
    Jul 14
    🚨 Attackers compromised four npm packages in the @​asyncapi namespace to deliver the Miasma botnet loader. The malware runs when an infected module is imported, then pulls an encrypted payload from IPFS across macOS, Linux, and Windows.
    3 compromised asyncapi packages deliver miasma botnet loader on macOS, Linux and Windows.
    Compromised npm Packages in the AsyncAPI Namespace Deliver M...
    From socket.dev
    9K09K
  • user avatar
    Socket
    @SocketSecurity
    Jul 11
    🚨 Update: The jscrambler attacker published four more malicious releases: 8.16.0, 8.17.0, 8.18.0, and 8.20.0 with the same infostealer payload. In 8.18.0 and 8.20.0, the dropper moved out of preinstall and into package code, bypassing npm install --ignore-scripts. Jscrambler
    user avatar
    Socket
    @SocketSecurity
    Jul 11
    🚨 BREAKING: Socket has identified a supply chain attack targeting the popular jscrambler npm package. The compromised [email protected] release uses a malicious preinstall hook to execute hidden Windows, macOS, or Linux binaries during npm install.
    Image
    26K026K
  • Socket reposted
    user avatar
    Dark Web Informer
    @DarkWebInformer
    Jul 11
    🚨 ALERT: Socket has identified the jscrambler npm package as the target of a supply chain attack. 👇
    user avatar
    Socket
    @SocketSecurity
    Jul 11
    🚨 BREAKING: Socket has identified a supply chain attack targeting the popular jscrambler npm package. The compromised [email protected] release uses a malicious preinstall hook to execute hidden Windows, macOS, or Linux binaries during npm install.
    Image
    14K014K
  • user avatar
    Socket
    @SocketSecurity
    Jul 11
    🚨 BREAKING: Socket has identified a supply chain attack targeting the popular jscrambler npm package. The compromised [email protected] release uses a malicious preinstall hook to execute hidden Windows, macOS, or Linux binaries during npm install.
    Image
    55K055K
    user avatar
    Socket
    @SocketSecurity
    Jul 11
    The malicious release was published today and detected by Socket 6 minutes later. Remove 8.14.0 and pin to 8.13.0 or another verified clean release. We reported the compromise to the Jscrambler maintainers. Will update as our investigation continues:
    A compromised jscrambler npm release added a malicious preinstall hook that runs hidden native binaries on Linux, macOS, and Windows.
    jscrambler npm Package Compromised in Supply Chain Attack - ...
    From socket.dev
    2.1K02.1K
Advertisement
Advertisement