Socket Headlines
Latest news and coverage for Socket
Recent Headlines
32 headlinesdeveloper-tech.com
Replit deploys Socket Firewall to secure AI development fullstack
Replit integrates Socket Firewall into its IDE to block malicious packages in real time during AI-assisted development.
Safeguard.sh Blog
TrapDoor Crypto Stealer Supply Chain Attack - May 2026
Safeguard.sh analyzes the TrapDoor attack, referencing Socket's disclosure and detection methods.
SecurityBrief
Socket raises USD $60 million to tackle code risks
Socket raises $60M Series C at $1B valuation led by Thrive Capital to secure software supply chains.
ForkLog
Socket Uncovers Supply Chain Attack on Cryptocurrency and AI Developers
Socket reports a supply chain attack targeting crypto and AI developers.
Menlo Times
How Socket is Securing AI-Driven Software Development
Socket raises $60M and expands security platform to protect AI-driven development from supply chain attacks.
Crypto Economy
Socket Security Flags 34 Malicious Packages Striking Major Crypto Ecosystems - Crypto Economy
Crypto Economy reports on Socket's detection of 34 malicious packages in a campaign targeting crypto ecosystems.
Glitchwire
Socket Flags 'TrapDoor' Campaign Stealing Crypto Wallets and Cloud Credentials Across npm, PyPI, and Crates.io — Glitchwire
Glitchwire covers Socket's disclosure of the TrapDoor campaign, which steals credentials across multiple package registries.
Ventureburn
Socket Raises $60M to Strengthen AI Security - Ventureburn
Ventureburn reports on Socket's $60M Series C funding to enhance AI security and supply chain protection.
SiliconANGLE
Code security startup Socket raises $60M in funding - SiliconANGLE
SiliconANGLE reports Socket's $60M Series C funding at $1B valuation, with details on platform and plans.
Pulse 2.0
Socket: $60 Million Series C Raised At $1 Billion Valuation To Help Enterprises Secure AI-Generated Code
Pulse 2.0 reports Socket's $60M Series C funding, emphasizing protection for AI-generated code.
Socket Blog
Socket raises $60M Series C at $1B valuation led by Thrive Capital to secure AI-driven software development
Socket announces $60M Series C funding at $1B valuation led by Thrive Capital to expand software supply chain security for AI-driven development.
BleepingComputer
Popular node-ipc npm package compromised to steal credentials
Socket detected the node-ipc compromise and provided analysis.
BleepingComputer
Shai Hulud attack ships signed malicious TanStack, Mistral npm packages
Socket tracked 416 compromised package artifacts in the Shai Hulud attack.
heise online
Supply chain attack on TanStack: 42 packages compromised | heise online
heise online reports on the TanStack attack, quoting Socket's recommendations for developers.
The Register
Cache-poisoning caper turns TanStack npm packages toxic
The Register covers the TanStack npm package compromise, mentioning Socket's tracking of the campaign.
CyberScoop
‘Mini Shai-Hulud’ malware compromises hundreds of open-source packages in sprawling supply-chain attack | CyberScoop
Article about Mini Shai-Hulud malware includes commentary from Snyk's Stephen Thoemmes, highlighting Snyk's role in security research.
ITTech Pulse
Socket Acquires Secure Annex to Expand Browser Extension Security
Socket has acquired Secure Annex, a security company focused on browser and editor extension monitoring, and founder John Tuckner joins Socket.
SecurityWeek
Dozens of Open VSX Extension Clones Linked to GlassWorm Malware - SecurityWeek
Socket identified 73 suspicious Open VSX extensions linked to GlassWorm malware, with six already activated.
Socket
Socket Has Acquired Secure Annex
Socket announces its acquisition of Secure Annex to expand extension security across browsers, IDEs, and AI tools.
BleepingComputer
GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions
Socket found a new wave of GlassWorm campaign using sleeper extensions that turn malicious after update.
Socket
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain ...
Socket researchers discovered that Bitwarden CLI was compromised as part of a supply chain attack, affecting millions of users.
Socket Blog
Introducing Reports: An Extensible Reporting Framework for Socket
Socket launched Reports, a new page in the Socket dashboard providing chart-based views of vulnerabilities, dependencies, and usage across projects. The feature gives security teams better visibility into their software supply chain.
Socket Blog
108 Chrome Extensions Linked to Data Exfiltration and Session Theft via Shared C2 Infrastructure
Socket's Threat Research Team identified 108 malicious Chrome extensions operating as a coordinated campaign, stealing credentials, user identities, and browsing data.
Help Net Security
Social engineering attacks on open source developers are increasing
Help Net Security reports on the increasing social engineering attacks targeting open source developers, referencing Socket's findings on the Axios compromise.
SecurityWeek
North Korean Hackers Target High-Profile Node.js Maintainers
SecurityWeek reports on North Korean threat actors targeting high-profile Node.js maintainers, referencing the Axios supply chain attack.
COSS Weekly Newsletter
Stay up to date with the latest news, funding rounds, and announcements from the COSS universe.
Check out COSS Weekly on the webLatest Content from Chinstrap Community
View allCOSS Weekly – Week of June 15, 2026
This week in COSS: The recent flurry of COSS M&A activity continues as VoidZero was acquired by Clou...
COSS Weekly – Week of June 8, 2026
This week in COSS: Supabase raised a $500M Series F at a $10B valuation led by GIC, DeepSeek is set ...
COSS Weekly – Week of June 1, 2026
This week in COSS: ClickHouse tripled its annualized revenue to $250M and is charting a path toward ...
COSS Weekly – Week of May 25, 2026
This week in COSS: NanoCo, the company behind the OpenClaw competitor NanoClaw, turned down a $20M b...
COSS Weekly – Week of May 18, 2026
This week in COSS: n8n announces a strategic investment from SAP that doubles its valuation to $5.2 ...
COSS Weekly – Week of May 11, 2026
This week in COSS: CopilotKit raised a $27M Series A, SAP announced plans to acquire both Dremio and...
Free Workshop: Building a Company Around an OSS Project
The post Free Workshop: Building a Company Around an OSS Project appeared first on Chinstrap Communi...
Introducing Cossmology, a Map of the Commercial OSS Universe
Chinstrap Community is proud to introduce Cossmology, a comprehensive, worldwide directory of over 1...

