Log inSign up
Feross
Socket
28.8K posts
Image
user avatar
Feross
Socket
@feross
⚡️ Founder + CEO @SocketSecurity (socket.dev) • 🌲 Visiting lecturer @Stanford (cs253.stanford.edu) • ❤️ Open source @WebTorrentApp + @StandardJS
Stanford, CA
feross.org
Joined August 2008
1,653
Following
41.3K
Followers
  • Pinned
    user avatar
    Feross
    Socket
    @feross
    May 24
    🚨 Active supply chain attack spanning npm, PyPI, and Crates.io simultaneously. Socket is tracking a campaign we’re calling TrapDoor: 34+ malicious packages and 384+ versions designed to steal crypto wallets, SSH keys, AWS credentials, GitHub tokens, browser data,
    Image
    33K
  • user avatar
    Feross
    Socket
    @feross
    Nov 22, 2020
    The Nintendo Switch uses my open source code 🤯
    user avatar
    Pelle Wessman
    @voxpelli
    Nov 22, 2020
    @feross Have you seen that the Nintendo Switch uses your safe-buffer? (I for some reason scrolled through their incredibly long license list)
    Image
  • user avatar
    Feross
    Socket
    @feross
    Nov 29, 2018
    Detect pressed keys via microphone audio capture in real-time. Uses training data captured by typing first. Very neat! github.com/ggerganov/kbd-… Based on ideas in this classic traffic analysis paper: Timing Analysis of Keystrokes and Timing Attacks on SSH people.eecs.berkeley.edu/~daw/papers/ss…
    Image
    GIF
  • user avatar
    Feross
    Socket
    @feross
    Apr 1, 2021
    🤩 Exciting news! I'm ready to share the project I've been working on for the past 2 months. ✨ Wormhole – the fastest way to send files ✨ Wormhole lets you share files with end-to-end encryption and it's super fast. Send a file in just 2 seconds: wormhole.app
    Image
    00:00
  • user avatar
    Feross
    Socket
    @feross
    Jun 24, 2023
    I wish more developers understood the constant stream of malware that is posted to npm, PyPI, and all package managers... Here's just a taste of some crazy malware Socket identified in the past couple weeks... All malware descriptions were FULLY WRITTEN by Socket AI.
    777K
  • user avatar
    Feross
    Socket
    @feross
    Feb 8, 2018
    🙌 Just released a CLI tool called `thanks` to help you thank the open source maintainers you depend on! ✨ 1. Run 'npx thanks' in your project 2. See which of your dependencies are seeking donations! 💸 🌟 Open source authors, add yourself to the list: github.com/feross/thanks
    Image
    GIF
  • user avatar
    Feross
    Socket
    @feross
    Oct 20, 2025
    Irresponsible post. End-to-end encryption works precisely because it assumes untrusted infrastructure. Whether Signal runs on AWS, GCP, or their own servers doesn’t matter -- the math does. Every Wi-Fi hotspot, ISP, and backbone in between is untrusted by design.
    user avatar
    Elon Musk
    X
    @elonmusk
    Oct 20, 2025
    I don’t trust Signal anymore
    175K
  • user avatar
    Feross
    Socket
    @feross
    Aug 22, 2022
    “Just use an npm package” @SocketSecurity
    Image
    00:00
  • user avatar
    Feross
    Socket
    @feross
    Sep 27, 2014
    The Internet of things! [source of pic unknown]
    Image
  • user avatar
    Feross
    Socket
    @feross
    Feb 13, 2024
    🚨 The Express.js repo got swamped with spam PRs thanks to a YouTube tutorial gone wrong. Hundreds of low-effort contributions flooded in, creating chaos for maintainers. Some called it an "attack on open source", as pages of "UTTER GARBAGE" piled up in the Express.js project.
    Image
    341K
  • user avatar
    Feross
    Socket
    @feross
    Mar 30, 2024
    The `xz` package backdoor is just the tip of the iceberg. There's a CONSTANT low-level stream of malware and spyware being uploaded to npm, PyPI, and Go registries. I want to share a few examples from the 20,000+ malicious packages we detected so far:
    Image
    00:00
    303K
  • user avatar
    Feross
    Socket
    @feross
    Sep 15, 2025
    🚨 Major active supply chain attack just hit npm. Popular package @​ctrl/tinycolor was trojanized — and it didn’t stop there. Over 40 packages were silently modified to steal secrets from dev machines & CI pipelines. Our team at Socket caught it. Full report coming soon. Stay
    603K
  • user avatar
    Feross
    Socket
    @feross
    Jan 24, 2019
    How camera lenses change the shape of your face [Image source unknown]
    Image
    GIF
  • user avatar
    Feross
    Socket
    @feross
    Dec 9, 2017
    "someone transferred ~0.05 BTC (currently ~$900), paying 0.01 BTC in fees (currently ~$180) and the network burned enough electricity for that single transaction to drive a Model S well over 1000km, or power an average house in Germany for about a month" – @dcposch
    Image

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement