You no longer have to choose between innovation and security. Commit a bun.lock or vlt-lock.json and Socket gives you full supply chain protection.
📖 Read more: www.helpnetsecurity.com/2026/01/19/f...
#cybersecurity #cybersecuritynews #remoteaccesstrojan #socialengineering @huntress.com @socket.dev
📖 Read more: www.helpnetsecurity.com/2026/01/19/f...
#cybersecurity #cybersecuritynews #remoteaccesstrojan #socialengineering @huntress.com @socket.dev
Temporal is the modern replacement for the old JS Date API ✨
socket.dev/blog/tempora... h/t @robpalmer.bsky.social
Temporal is the modern replacement for the old JS Date API ✨
Check out the full episode →
socket.dev/blog/insecur...
Check out the full episode →
socket.dev/blog/insecur...
Full story → socket.dev/blog/tailwin... #OSS #CSS
Read it here: socket.dev/blog/npm-to-...
Read it here: socket.dev/blog/npm-to-...
It follows a year of supply chain attacks & a rocky shift away from classic tokens over the past month that left many maintainers struggling.
socket.dev/blog/npm-to-... #NodeJS cc: @campuscodi.risky.biz
Dependabot opens a PR. Socket flags it as malicious.
Socket CEO @feross.bsky.social discusses dependency risk and update timing, on @softwaredaily.bsky.social.
Full episode → socket.dev/blog/softwar...
Dependabot opens a PR. Socket flags it as malicious.
Socket CEO @feross.bsky.social discusses dependency risk and update timing, on @softwaredaily.bsky.social.
Full episode → socket.dev/blog/softwar...
“I put this code online as a gift to the world. I didn’t promise it would never have a defect.”
Full episode → socket.dev/blog/softwar... #OpenSource
“I put this code online as a gift to the world. I didn’t promise it would never have a defect.”
Full episode → socket.dev/blog/softwar... #OpenSource
socket.dev/blog/spearph...
socket.dev/blog/spearph...
cc: @campuscodi.risky.biz @cisoseries.bsky.social @zackwhittaker.com
socket.dev/blog/spearph...
cc: @campuscodi.risky.biz @cisoseries.bsky.social @zackwhittaker.com
Full research → socket.dev/blog/malicio...
Full research → socket.dev/blog/malicio...
Full research → socket.dev/blog/malicio...
This fake “VPN” ran for years and charged users for the privilege of silently intercepting their traffic.
cc: @campuscodi.risky.biz @zackwhittaker.com @cisoseries.bsky.social
Full research → socket.dev/blog/malicio...
This fake “VPN” ran for years and charged users for the privilege of silently intercepting their traffic.
cc: @campuscodi.risky.biz @zackwhittaker.com @cisoseries.bsky.social
In case you missed this detail: with Docker Hardened Images teams get secure application dependencies by default. @socket.dev Firewall is built in.
@thenewstack.io breaks down why we made Docker Hardened Images free. Featuring Docker's VP of Product, Mike Donovan, on security, open source, and what comes next.
🔗 https://bit.ly/3N4DXt6
#DHI #OpenSource
In case you missed this detail: with Docker Hardened Images teams get secure application dependencies by default. @socket.dev Firewall is built in.
Socket Firewall Free is now bundled into Docker Hardened Images, adding build-time and dependency-install supply chain protection for @nodejs.org, @python.org, and @rust-lang.org
socket.dev/blog/socket-...
Socket Firewall Free is now bundled into Docker Hardened Images, adding build-time and dependency-install supply chain protection for @nodejs.org, @python.org, and @rust-lang.org
socket.dev/blog/socket-...
Check out the full episode → socket.dev/blog/softwar...
Check out the full episode → socket.dev/blog/softwar...
Full report →
socket.dev/blog/malicio... #dotnet
Full report →
socket.dev/blog/malicio... #dotnet
In this @softwaredaily.bsky.social episode, @feross.bsky.social joins @joshuakgoldberg.com to talk about why that’s so risky.
Check it out→ socket.dev/blog/softwar...
In this @softwaredaily.bsky.social episode, @feross.bsky.social joins @joshuakgoldberg.com to talk about why that’s so risky.
Check it out→ socket.dev/blog/softwar...
socket.dev/blog/npm-rev... #NodeJS #JavaScript
@feross.bsky.social
bit.ly/4iMDU14
@feross.bsky.social
bit.ly/4iMDU14
We're looking for stellar frontend developers. DM me
We're looking for stellar frontend developers. DM me
cc: @thisweekinrust.bsky.social @rustaceans.bsky.social @theembeddedrust.bsky.social @campuscodi.risky.biz
Details + IOCs: socket.dev/blog/malicio... #Rustlang