Feross ยท X (formerly Twitter)

Feross

Socket

29K

posts

Feross profile banner

user avatar

Socket

@feross

Stanford, CA

Joined August 2008

  • Pinned

    user avatar

    ๐Ÿšจ Active supply chain attack on npm: keyv and cacheable are compromised right now, and the payload is a worm. The maintainer account behind both package families was compromised. On August 4, ten packages were republished with a malicious preinstall hook that steals your

  • user avatar

    AI agents now choose, install, and run code with developer credentials, often with no human in the loop. 25 years of security infrastructure assumes a human makes those decisions. That assumption is breaking. Malicious packages on public registries: 55K in 2022, nearly 500K in

  • user avatar

    Socket's Business plan is now free for open source projects. Attackers took over a maintainer account and pushed malware into keyv and cacheable, packages with tens of millions of weekly downloads. Maintainers are the attack surface now. Any public OSI-licensed project gets

  • user avatar

    ๐Ÿšจ 737 malicious VPN extensions in the Chrome Web Store. 516 are still live with 58,318 installs. They impersonate Proton, NordVPN, and Cloudflare's 1.1.1.1, then route all browser traffic through the operator's proxies. Check yours:

  • user avatar

    ๐Ÿš€ Socket is now available in the AWS Security Hub Extended plan. For AWS customers, that means you can apply committed AWS spend toward

    @SocketSecurity

    , move seats up or down month to month, and consolidate billing with the rest of your security stack. The first month is free.

Read the original on x.com โ†—