Socket
フィード

Another Round of TEA Protocol Spam Floods npm, But It’s Not a Worm
Socket
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.
17時間前

PyPI Expands Trusted Publishing to GitLab Self-Managed as Adoption Passes 25 Percent
Socket
PyPI adds Trusted Publishing support for GitLab Self-Managed as adoption reaches 25% of uploads
1日前

Malicious Chrome Extension Exfiltrates Seed Phrases, Enabling Wallet Takeover
Socket
A malicious Chrome extension posing as an Ethereum wallet steals seed phrases by encoding them into Sui transactions, enabling full wallet takeover.
3日前

Meet Socket at Black Hat Europe and BSides London 2025
Socket
Socket is heading to London! Stop by our booth or schedule a meeting to see what we've been working on.
4日前

OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
Socket
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
7日前
9 Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
Socket
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.
9日前

How Enterprise Security Is Adapting to AI-Accelerated Threats
Socket
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.
11日前

The Changelog Podcast: Practical Steps to Stay Safe on npm
Socket
Learn the essential steps every developer should take to stay secure on npm and reduce exposure to supply chain attacks.
15日前

Security Community Slams MIT-linked Report Claiming AI Powers 80% of Ransomware
Socket
Experts push back on new claims about AI-driven ransomware, warning that hype and sponsored research are distorting how the threat is understood.
16日前

Ruby Core Team Assumes Stewardship of RubyGems and Bundler, Former Maintainers Offer to Transfer All Rights to Matz
Socket
Ruby's creator Matz assumes control of RubyGems and Bundler repositories while former maintainers agree to step back and transfer all rights to end the dispute.
17日前
