ctipilot.ch

Socket Security (socket.dev blog)

socket-dev-blog · B · active

https://socket.dev/blog

researchvulnslang: enfetch failures: 0quiet periods: 0last fetch: 2026-07-13

Primary disclosure outlet for supply-chain security findings (TeamPCP/Mini Shai-Hulud, node-ipc, GemStuffer). Multiple in-window primaries in W21 run. Proposed by W1 sub-agent. | 2026-05-26: contributed TrapDoor + Packagist supply-chain primaries (S1, S3). | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → webfetch https://socket.dev/blog (listing) then webfetch the per-article socket.dev/blog/<slug> URL for body (full technical analysis renders). AVOID: Nothing to avoid — plain WebFetch works on listing and article. Listing mixes product-announcement posts (Socket MCP/Firewall) with the supply-chain research — filter to the package-compromise titles.. | 2026-07-05 admiralty audit: B — original supply-chain research from own scanning telemetry; reputable vendor lab. No status change (active).

Cited in 14 entries

Citation cadence

Citation days per ISO week (9 weeks of coverage span, total 12).