cd/entity/Socket· home› entities› Socket
grep -l @socket /news/*.json | wc -l → 42

Socket

mentions 42 type Organization page 2/3 feed RSS

// recent coverage 42 mentions

06:30
2026-07-14
agentic.tracebit.com
ai-safety

Context bombs: stopping AI attackers in their tracks

A new defensive technique called a 'context bomb' — a short string hidden in decoy resources that triggers safety guardrails in offensive AI agents — reduced autonomous cyberattack success by roughly …

12:02
2026-07-12
dev.to
ai-safety

How a preinstall hook silently ran malware on npm install

A malicious version of the npm package jscrambler used a preinstall hook to deploy a Rust infostealer on developer machines. The attack targeted browser credentials, crypto wallets, and Bitwarden vaul…

16:27
2026-06-26
socket.dev
ai-safety

Miasma Mini Shai-Hulud Hits ImmobiliareLabs npm Packages

Socket Threat Research tracked a fresh compromise in the Miasma Mini Shai-Hulud supply chain campaign affecting legitimate npm packages under the @immobiliarelabs scope, including Backstage plugins fo…

16:27
2026-06-26
csoonline.com
ai-safety

Malware authors subvert AI detection systems

Malware authors are subverting AI detection systems with code that commands LLM-assisted products to abort analysis. SentinelLabs discovered macOS.Gaslight, a Rust backdoor targeting MacOS systems, wh…

19:03
2026-06-25
devclubhouse.com
artificial-intelligence

The Vibe Coding Bill Comes Due

AI-generated code is flooding GitHub and degrading codebases, with research showing AI-written code has 1.7 times more critical issues and 45% ships with OWASP Top 10 vulnerabilities. Major projects l…

08:21
2026-06-24
maref.cc
artificial-intelligence

GitHub Is Becoming a Giant AI Code Dump

GitHub has 630 million repositories, with nearly half of all new code written by AI, but developer trust in AI code dropped from 77% to 60%. Carnegie Mellon University found 6 million fake stars, and …

15:41
2026-06-23
socket.dev
ai-safety

The Code You Didn't Write Is Still Yours to Defend

A security expert warns that AI agents are creating a new software supply chain risk by fetching and running unvetted open-source packages in ephemeral sandboxes, bypassing traditional scanners and re…

09:22
2026-06-13
socket.dev
developer-tools

Mini Shai-Hulud, Miasma, and Hades Worms Target Bioinformati

Socket's Threat Research team identified 23 new malicious PyPI packages in the Mini Shai-Hulud, Miasma, and Hades supply chain attacks, expanding the campaign to 471 artifacts across npm and PyPI. The…

← prev page 2 / 3 next →
// co-occurs with top 8 entities
// topics top 6 topics