ctipilot.ch

Socket Security (socket.dev blog)

socket-dev-blog · HIGH · active

https://socket.dev/blog

researchvulnslang: enfailures: 0last fetch: 2026-06-29

Primary disclosure outlet for supply-chain security findings (TeamPCP/Mini Shai-Hulud, node-ipc, GemStuffer). Multiple in-window primaries in W21 run. Proposed by W1 sub-agent. | 2026-05-26: contributed TrapDoor + Packagist supply-chain primaries (S1, S3). | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → webfetch https://socket.dev/blog (listing) then webfetch the per-article socket.dev/blog/<slug> URL for body (full technical analysis renders). AVOID: Nothing to avoid — plain WebFetch works on listing and article. Listing mixes product-announcement posts (Socket MCP/Firewall) with the supply-chain research — filter to the package-compromise titles..

Cited in 13 entries

Citation cadence

Citation days per ISO week (8 weeks of coverage span, total 11).