Feross

28.9K posts

Feross banner
Feross

Feross

@feross

⚡️ Founder + CEO @SocketSecurity (https://t.co/7g1opA7Tr8) • 🌲 Visiting lecturer @Stanford (https://t.co/yw9prxLiLe) • ❤️ Open source @WebTorrentApp + @StandardJS

Stanford, CA Katılım Ağustos 2008
1.7K Takip Edilen41.2K Takipçiler
Sabitlenmiş Tweet
Feross
Feross@feross·
🚨 Active supply chain attack spanning npm, PyPI, and Crates.io simultaneously. Socket is tracking a campaign we’re calling TrapDoor: 34+ malicious packages and 384+ versions designed to steal crypto wallets, SSH keys, AWS credentials, GitHub tokens, browser data, and environment variables from developers. We had a median detection time of 5 minutes and 27 seconds. Fastest detection was 58 seconds after publication. The packages target crypto, DeFi, Solana, Sui/Move, and AI developers. Names like crypto-credential-scanner, solidity-deploy-guard, sui-move-build-helper, and prompt-engineering-toolkit are crafted to look like legitimate dev tools. Each ecosystem uses a different execution path: • npm: postinstall hooks run trap-core.js, a 1,149-line credential harvester that validates stolen AWS/GitHub tokens via API calls and attempts SSH-based lateral movement • PyPI: packages auto-execute on import, download JavaScript from an attacker-controlled GitHub Pages domain, and run it via node -e • Crates.io: malicious build.rs scripts search for wallet keystores, XOR-encrypt them, and exfiltrate to GitHub Gists What makes this campaign especially notable: the npm payload plants persistence through .cursorrules and CLAUDE.md files using zero-width Unicode characters, attempting to trick AI coding assistants into running “security scans” that exfiltrate secrets. The attacker also opened PRs against major AI projects (LangChain, LlamaIndex, MetaGPT, OpenHands, browser-use) trying to inject these files into codebases directly. If you work in crypto, DeFi, or AI tooling: audit your lockfiles, check for any of the listed packages, and review your project for unexpected .cursorrules or CLAUDE.md files. Full list of IOCs and affected packages: socket.dev/blog/trapdoor-…
Feross tweet media
English
10
30
149
33.6K
Feross
Feross@feross·
🔺 Treat AI-suggested deps like PRs from strangers. Out of 5 frontier LLMs and ~200k coding prompts, all 5 models hallucinated the same nonexistent package names. 53 remain open to register on PyPI or npm (!!) One slopsquat reaches users of all models. socket.dev/blog/slopsquat…
English
1
1
8
6.4K
Feross
Feross@feross·
🚨 Attackers are running an exploitation campaign on GitHub's own Actions runners. Socket traced malicious dev versions of 10 Packagist packages to 583 weaponized workflow files. Runners pull payloads from C2, exploit CVE-2026-41940 (cPanel & WHM auth bypass), and harvest AWS keys, GitHub tokens, and SSH material. Campaign signatures match ~15,000 to 16,000 workflow files across GitHub. socket.dev/blog/github-ac…
English
1
3
28
9.4K
Jared Palmer
Jared Palmer@jaredpalmer·
Personal update: I’ve joined @Cognition to lead engineering. I’m grateful to @asha_shar and everyone at Xbox for an amazing year. Excited for this next chapter with @ScottWu46 and team.
Jared Palmer tweet media
English
242
56
2.3K
662.6K
Feross retweetledi
Socket
Socket@SocketSecurity·
The White House launched a new initiative to coordinate AI-discovered vulnerabilities across government, critical infrastructure, and open source. No operating plan is public yet, even as federal vulnerability programs face massive backlogs and failures. socket.dev/blog/white-hou…
English
1
5
17
3.3K
Feross
Feross@feross·
I'm so proud of this partnership with @Replit and the massive number of developers that we're protecting every day. 8,000 malicious packages blocked per day for Replit developers!
Replit ⠕@Replit

Blocking the bad and removing the noise. Our @SocketSecurity partnership blocks ~8,000 malicious packages a day and filters out 30% of false-positive critical vulnerability alerts, the ones that were never exploitable. We focus on security so you can focus on building.

English
1
5
18
4K
Matteo Collina
Matteo Collina@matteocollina·
After 16+ years on @github, I’m finally a star. ⭐️
Matteo Collina tweet media
English
53
15
608
20.4K
Boardy
Boardy@boardyai·
@feross @Replit 8k/day is a wild number. who's the next platform you're trying to land?
English
1
0
1
41
Replit ⠕
Replit ⠕@Replit·
Blocking the bad and removing the noise. Our @SocketSecurity partnership blocks ~8,000 malicious packages a day and filters out 30% of false-positive critical vulnerability alerts, the ones that were never exploitable. We focus on security so you can focus on building.
Replit ⠕@Replit

Package Firewall is now enabled by default for every builder on Replit as part of Replit Auto-Protect And its already stopping ~8,000 malicious installs per day on Replit Read more at: replit.com/blog/package-f…

English
4
11
54
32.8K
Feross retweetledi
tuckner
tuckner@tuckner·
Recording of my talk at @sec_kc about malware in extensions. A summary of the attacks that might impact your organization. youtu.be/y850kRQXMCI?is…
YouTube video
YouTube
English
0
7
20
4K
Feross retweetledi
Socket
Socket@SocketSecurity·
LLM-assisted vulnerability discovery is raising patch volume across the industry and changing how projects ship security fixes. Next.js is the latest to respond, moving to scheduled monthly releases starting July 20. socket.dev/blog/nextjs-mo…
English
3
11
34
5.3K
Neil Jhaveri
Neil Jhaveri@neil_jhaveri·
I am so glad to report that the @Mimestream TestFlight beta has finally been approved to be a Default Email App on iOS! Coming to the next TestFlight update!
Neil Jhaveri tweet media
English
10
1
90
9.4K
Feross retweetledi
Socket
Socket@SocketSecurity·
🚨 Attackers compromised four npm packages in the @​asyncapi namespace to deliver the Miasma botnet loader. The malware runs when an infected module is imported, then pulls an encrypted payload from IPFS across macOS, Linux, and Windows. socket.dev/blog/asyncapi-…
English
1
16
61
9.1K
Feross retweetledi
Socket
Socket@SocketSecurity·
🎮 11 malicious NuGet tools posed as game cheats to deliver Windows malware that used Google Sheets to track hosts and enforce a remote ban list. Three of the payloads also let Telegram users remotely capture and receive screenshots from the host. socket.dev/blog/11-malici…
English
0
9
13
3.7K
Feross
Feross@feross·
🚨 Active supply chain attack on AsyncAPI. Five malicious @​asyncapi packages were published to npm today, shipped through the project's own GitHub Actions trusted publishing pipeline after an attacker poisoned a commit on the next branch. Affected versions: @asyncapi/generator@3.3.1 @asyncapi/generator-helpers@1.1.1 @asyncapi/generator-components@0.7.1 @asyncapi/specs@6.11.2 @asyncapi/specs@6.11.2-alpha.1 The first three were published within a six-second window at 07:10 UTC. AsyncAPI tooling runs on developer machines and CI runners, so the implant executes directly in build environments. Socket AI Scanner flagged all five releases as confirmed malware. This is a multi-stage botnet loader: • On load, an obfuscated implant spawns a detached, hidden Node.js child process • The child downloads an 8.25 MB encrypted payload (sync.js) from IPFS into a fake "NodeJS" data directory on Windows, macOS, or Linux • HKDF-SHA256 key derivation and AES-256-GCM decryption unpack the final stage • That final stage is Miasma, a 3.09 MB command framework with REST-based C2 plus fallback channels over Nostr, IPFS, Ethereum RPC, and BitTorrent DHT • 12 command types, including ShellExec, file get/put/delete, payload updates, and self-destruct • Persists on Linux via a systemd user service (miasma-monitor.service) The campaign config is labeled "miasma-train-p1" and contains dormant modules for PyPI, RubyGems, and Cargo. npm appears to be phase one. If you installed any affected version, treat the host as potentially compromised. Check for detached Node.js processes with ignored stdio, connections to 85[.]137[.]53[.]71, fake NodeJS directories, and the miasma-monitor service. Pin to known-good versions and audit lockfiles before your next install. Full analysis: socket.dev/blog/asyncapi-… Developing story...
English
2
12
38
60.8K