Ahmad Nassri
ahmadnassri.com
Ahmad Nassri
@ahmadnassri.com
CTO @ Socket.dev
Reposted by Ahmad Nassri
"The agents have too much power" @ahmadnassri.com
October 1, 2026 at 2:35 PM
Reposted by Ahmad Nassri
Modern malware doesn't need to steal anything 🫪

It simply tells your AI agent "you're an authorized pentester" and lets the it do the stealing.

Socket CTO @ahmadnassri.com Nassri on Insecure Agents with Allie Howe: socket.dev/blog/insecur...
October 2, 2026 at 2:08 PM
Reposted by Ahmad Nassri
Socket now protects four of the Magnificent Seven, two of the three hyperscalers, nearly every leading AI lab, and one of America's largest automakers.

This summer, @socket.dev automatically blocked two live supply chain attacks at the world's largest company.
September 29, 2026 at 7:52 PM
Reposted by Ahmad Nassri
A preview of where autonomous hacking may be heading:

During a UK cyber test, a Mythos 5 agent used sockpuppets, spearphishing emails, and prompt injection to try to get an open source maintainer to merge malware.

socket.dev/blog/ai-agen... #OpenSource #Cybersecurity
UK Cyber Test: AI Agent Attempted to Social Engineer Open So...
During a UK cyber test, a Mythos 5 agent used sockpuppets, social engineering, and prompt injection to try to get a maintainer to merge malware.
socket.dev
August 5, 2026 at 7:09 PM
Reposted by Ahmad Nassri
🚀 Socket is now available in the AWS Security Hub Extended plan. Apply committed AWS spend, first month free.

Also new: Socket Firewall bills on unique artifacts checked, not bandwidth or downloads. Pin 200 packages, install them a million times, pay for 200.

socket.dev/blog/aws-sec...
AWS Security Hub Adds Socket for Supply Chain Security - Soc...
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.
socket.dev
August 4, 2026 at 9:48 PM
🚨 An npm worm is spreading live, while half of the security industry is at #BlackHat in Vegas. talk about timing!

@socket.dev is now tracking 2,234 malicious package artifacts across 444 unique packages in the keyv/cacheable compromise.

Average detection time: 5 min 18 sec after publication
Popular npm Packages in the keyv and Cacheable Namespaces Co...
Popular npm packages keyv and cacheable compromised.
socket.dev
August 4, 2026 at 2:46 PM
Reposted by Ahmad Nassri
Excited by the approach Packagist has taken here, and so incredibly excited for Socket to be a launch sponsor.

socket.dev/blog/socket-...
Socket Is Sponsoring Composer and Packagist - Socket
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secur...
socket.dev
August 1, 2026 at 12:29 AM
Reposted by Ahmad Nassri
The White House launched a new initiative to coordinate AI-discovered vulnerabilities across government, critical infrastructure, and open source.

No operating plan is public yet, even as federal vulnerability programs face massive backlogs and failures.

socket.dev/blog/white-h...
White House Launches Gold Eagle Initiative to Manage Surge i...
The White House’s Gold Eagle Initiative aims to coordinate AI-discovered vulnerabilities, validate findings, and accelerate patching across critical s...
socket.dev
July 17, 2026 at 10:33 PM
Reposted by Ahmad Nassri
New research: We’re seeing more packages designed to trip up AI malware scanners.

This new package uses prompt-injection-style comments, safety-triggering content, context flooding, and obfuscated JS to probe where scanners refuse, truncate, or miss the code that matters.
socket.dev/blog/npm-pac...
npm Package Uses Prompt Injection and Token Flooding to Disr...
A new npm package tests AI malware scanners with prompt injection, safety-triggering comments, context flooding, and obfuscated JavaScript.
socket.dev
June 16, 2026 at 11:31 PM
Reposted by Ahmad Nassri
🔥 Socket Firewall is now built into Replit's AI-powered development experience.

It’s already blocking 8K malicious packages/day across builders on the platform, giving Replit users stronger protection by default at the moment dependencies are introduced.

socket.dev/blog/socket-...
Socket Partners with Replit to Block Malicious Packages in A...
Replit is integrating Socket Firewall into its AI-powered development experience to help protect builders from malicious open source packages.
socket.dev
June 10, 2026 at 6:05 PM
Reposted by Ahmad Nassri
npm accidentally marked a bunch of one-character packages as security holders, including c, i, n, x, several numbers, and even the - package.

The registry confirmed it was a tooling bug and said a rollback is underway.

socket.dev/blog/npm-too...
npm Tooling Bug Incorrectly Marks One-Character Packages as ...
npm confirmed a tooling bug incorrectly marked several one-character packages as security holders and said it was working on a rollback.
socket.dev
June 9, 2026 at 9:17 PM
Reposted by Ahmad Nassri
npm nuked every granular access token that bypasses 2FA after another Mini Shai-Hulud wave compromised hundreds of packages. Good news: staged publishing is now in public preview.

socket.dev/blog/npm-inv... #NodeJS #JavaScript
npm Invalidates Granular Access Tokens as Mini Shai-Hulud Sw...
npm invalidated all granular access tokens that bypass 2FA after a fresh Mini Shai-Hulud wave compromised 323 npm packages. Staged publishing also ent...
socket.dev
May 21, 2026 at 10:04 PM
Reposted by Ahmad Nassri
Socket raised a C round!
(Maybe we should be SoCket now! ok eeew no)

All I can see on my part is that I've been having an awesome time working on AI and with AI, detection, and what not. Lucky to be part in the right place at the right time :D

bsky.app/profile/fero...
Today is a big day for @socket.dev. We raised a $60M Series C at a $1B valuation, led by Thrive Capital. 20,000+ orgs, 1.5M repos protected, 1,000+ supply chain attacks blocked per week. 3/5 FAANG companies are customers. We're just getting started.
May 20, 2026 at 3:39 PM
Reposted by Ahmad Nassri
Today is a big day for @socket.dev. We raised a $60M Series C at a $1B valuation, led by Thrive Capital. 20,000+ orgs, 1.5M repos protected, 1,000+ supply chain attacks blocked per week. 3/5 FAANG companies are customers. We're just getting started.
May 20, 2026 at 3:22 PM
Today's "Mini Shai-Hulud" supply chain attack is a wild evolution!

1. Cascading, cross-ecosystem propagation (PyPi ➡️ npmjs ➡️ Packagist)
2. Using a JS runtime (Bun) to infect Python and PHP
3. Impersonates Claude in git commits to hide in plain sight

🧵
May 1, 2026 at 2:41 AM
Reposted by Ahmad Nassri
We’re tracking 73 Open VSX sleeper extensions tied to the GlassWorm campaign, with at least 6 already activated to deliver malware.

These cloned extensions initially appear benign, then later become malware delivery vehicles through normal updates.

socket.dev/blog/73-open...
73 Open VSX Sleeper Extensions Linked to GlassWorm Show New ...
Socket is tracking cloned Open VSX extensions tied to GlassWorm, with several updated from benign-looking sleepers into malware delivery vehicles.
socket.dev
April 25, 2026 at 1:16 AM
Reposted by Ahmad Nassri
🚨 Breaking: Namastex Labs, the team behind Automagik[.]dev, hit with a supply chain attack affecting its npm packages.

The malicious versions replicate TeamPCP-style Canister Worm tradecraft, including secret theft, exfiltration, and self-propagation.

socket.dev/blog/namaste...
Namastex.ai npm Packages Hit with TeamPCP-Style CanisterWorm...
Malicious Namastex.ai npm packages appear to replicate TeamPCP-style Canister Worm tradecraft, including exfiltration and self-propagation.
socket.dev
April 22, 2026 at 12:49 AM
Goosonomics (noun) 🪿

A hypocritical corporate strategy of extracting immense financial value from unpaid, open-source labor, only to later declare OSS "dead" or untrustworthy to justify forking, rebuilding, and rebundling that exact same software as a premium, "safe" product.
socket.dev Socket @socket.dev · Apr 10
🪿 There are some wild takes out there right now about open source being “dead” after recent supply chain attacks and rapid advances in AI-driven security.

Let’s talk goosenomics for a minute. → socket.dev/blog/dont-ki...
Don't Kill the Goose That Lays the Golden Eggs - Socket
Open source is under attack because of how much value it creates. It has been the foundation of every major software innovation for the last three dec...
socket.dev
April 10, 2026 at 1:50 AM
Reposted by Ahmad Nassri
"Docker Hardened Images for Node.js, Python, and Rust also include Socket Firewall, which blocks malicious dependencies at install time."

Another tool for securing your build pipeline - DHI are free and open source: socket.dev/blog/socket-...
The biggest failure in recent supply chain attacks isn't a single vuln, it's implicit trust.
Stolen creds poison packages, poisoned packages steal creds, and the loop keeps accelerating.

Docker’s CISO breaks down what’s actually happening & what teams can do to reduce risk: https://bit.ly/3NMjF8K
Defending Your Software Supply Chain: What Every Engineering Team Should Do Now | Docker
The latest supply chain attack wave is not a single incident to respond to. It is a permanent shift in the threat landscape. In this blog by the Docker CISO Mark Lechner, we share the recommended best...
bit.ly
April 7, 2026 at 2:05 AM
North Korea is targeting npm maintainers.

Not for crypto. For write access to packages downloaded trillions of times a year.

Lodash. Fastify. axios. mocha. Node.js core. Even @feross.bsky.social and several @socket.dev engineers!

socket.dev/blog/attacke...
Attackers Are Hunting High-Impact Node.js Maintainers in a C...
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
socket.dev
April 3, 2026 at 8:55 PM
Reposted by Ahmad Nassri
We’re seeing cases where teams can’t explain how they were compromised by the Axios incident because it doesn’t show up in their project's lockfile. The blast radius here is much larger than it looks.

Deep dive into the messy reality of modern dependency resolution → socket.dev/blog/hidden-...
The Hidden Blast Radius of the Axios Compromise - Socket
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.
socket.dev
April 1, 2026 at 11:34 PM
Reposted by Ahmad Nassri
The axios compromise blast radius is much much much bigger than people seem to suspect. The secret: transitive dependencies with open ranges making it extremely obscure and difficult to detect whether you were affected, after the fact.
🧨 Axios only needed to be resolved somewhere in your dependency graph to affect you.

Semver + transitive deps + runtime installs = hidden blast radius.

If you only checked your project’s lockfile, you may still not know.

socket.dev/blog/hidden-... #nodejs #javascript
The Hidden Blast Radius of the Axios Compromise - Socket
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.
socket.dev
April 1, 2026 at 8:58 PM
⚠️ If you're running local mcp servers, you need to do the following:

1. Individually "install" packages you want to use, within a specified directory: (e.g. $HOME/mcp) creating a lockfile

2. Add: "--include-workspace-root --workspace $HOME/mcp --no --offline" to EVERY npx call
🧨 Axios only needed to be resolved somewhere in your dependency graph to affect you.

Semver + transitive deps + runtime installs = hidden blast radius.

If you only checked your project’s lockfile, you may still not know.

socket.dev/blog/hidden-... #nodejs #javascript
The Hidden Blast Radius of the Axios Compromise - Socket
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.
socket.dev
April 1, 2026 at 9:33 PM
📢 ZERO SIGN UP, FREE FOREVER, MALWARE PROTECTION.

npm i -g sfw

sfw npm install
sfw pnpm install
sfw yarn install
sfw cargo fetch
sfw uv pip install

socket.dev/blog/introdu...
Introducing Socket Firewall: Free, Proactive Protection for ...
Socket Firewall is a free tool that blocks malicious packages at install time, giving developers proactive protection against rising supply chain atta...
socket.dev
March 31, 2026 at 11:22 AM
sigh.
March 31, 2026 at 4:54 AM