Socket
Socket is the #1 software supply chain security platform. Next-gen SCA + SBOM + 0-day prevention. LOVED BY DEVELOPERS.
https://socket.dev
- 🛠️ ESLint continues its journey to language-agnostic linting, now officially supporting HTML! This new integration brings 48 rules for best practices, accessibility, SEO, and more. Learn more → socket.dev/blog/eslint-... @eslint.org #HTML
- CISA has quietly killed off its RSS feeds for KEVs and cyber alerts, replacing an open, automation-friendly format with email and social media alerts. A small change with big consequences for threat monitoring tools that relied on RSS: socket.dev/blog/cisa-ki...
- 🤖 The MCP community just announced work on an official metaregistry to standardize AI tool discovery. It will enable agents to dynamically find & install MCP servers, a game-changer for autonomous systems that can extend their capabilities on demand. Learn more → socket.dev/blog/officia...
- 🚨 Socket researchers discovered an npm package targeting #crypto traders. It hunts for wallet keys & #BullX credentials, then exfiltrates them via Telegram. A second package serves as a minimal wrapper to execute the payload. Full report → socket.dev/blog/malicio... #JavaScript