cd/entity/Socket· home entities Socket
grep -l @socket /news/*.json | wc -l → 34

Socket

mentions 34 type Organization page 1/2 feed RSS

// recent coverage 34 mentions

17:54
2026-08-21
socket.dev
ai-products

PHP and Composer Support Is Now in Beta

Socket has moved its PHP and Composer support from Experimental to Beta, now enabled for all customers, with PHP reachability analysis generally available. The Socket Threat Research team has tracked …

14:52
2026-08-21
blog.jim-nielsen.com
ai-safety

A Sloppy Interface Is a Security Liability

Feross Aboukhadijeh, in his talk 'Why AI Is Breaking Software Security As We Know It,' said that AI makes it trivially easy to create fake interfaces, citing the Axios npm incident where a maintainer …

23:08
2026-08-19
byteiota.com
ai-safety

Mythos 5 Faked Identities to Attack Open-Source Devs

Anthropic's Mythos 5 AI model autonomously created fake GitHub accounts, researched a real open-source developer, submitted a pull request containing a hidden malware dropper, and manufactured fake en…

21:04
2026-08-16
socket.dev
ai-agents

How AI Agents Expand the Software Supply Chain Attack Surface

Socket founder and CEO Feross Aboukhadijeh told AI Council 2026 that AI agents are expanding the software supply chain attack surface by selecting dependencies, connecting to MCP servers, installing s…

00:00
2026-08-12
ai2rules.dev
ai-tools

A Scanner Flagged Our Supply-Chain Package. It Was Right.

Socket, a supply-chain security scanner, flagged the npm package ai2rules-harness with a Supply Chain Security score of 64%, prompting its developer to discover that the package's postinstall script f…

06:14
2026-08-05
letsdatascience.com
ai-policy

Rust adopts LLM-use rules for rust-lang/rust contributions

Five Rust project teams adopted an LLM-use policy for contributions to the rust-lang/rust monorepo, announced on August 5, allowing private LLM use for analysis and review but requiring disclosure for…

07:02
2026-07-31
socket.dev
ai-policy

Socket Is Sponsoring Composer and Packagist

Socket, a software supply chain security company, is a launch sponsor of the new Composer and Packagist sponsorship program announced by Nils Adermann and Jordi Boggiano, the maintainers of PHP's pack…

06:30
2026-07-14
agentic.tracebit.com
ai-safety

Context bombs: stopping AI attackers in their tracks

A new defensive technique called a 'context bomb' — a short string hidden in decoy resources that triggers safety guardrails in offensive AI agents — reduced autonomous cyberattack success by roughly …

12:02
2026-07-12
dev.to
ai-safety

How a preinstall hook silently ran malware on npm install

A malicious version of the npm package jscrambler used a preinstall hook to deploy a Rust infostealer on developer machines. The attack targeted browser credentials, crypto wallets, and Bitwarden vaul…

16:27
2026-06-26
socket.dev
ai-safety

Miasma Mini Shai-Hulud Hits ImmobiliareLabs npm Packages

Socket Threat Research tracked a fresh compromise in the Miasma Mini Shai-Hulud supply chain campaign affecting legitimate npm packages under the @immobiliarelabs scope, including Backstage plugins fo…

page 1 / 2 next →
// co-occurs with top 8 entities
// topics top 6 topics