
Security News
libxml2 Maintainer Ends Embargoed Vulnerability Reports, Citing Unsustainable Burden
Libxml2’s solo maintainer drops embargoed security fixes, highlighting the burden on unpaid volunteers who keep critical open source software secure.
Product
Bret Comnes
May 3, 2023
The Socket GitHub app now runs Project Health Reports on the default branch instead of in pull requests. Previously, Project Health Reports were only run in the pull request context, along side pull request alert scanning. After usage feedback and building a better understanding how these reports are being used, we decided to run them on all new commits created on the default branch of repositories.
Photo by Simon Launay on Unsplash
Subscribe to our newsletter
Get notified when we publish new security blog posts!
Try it now
Security News
Libxml2’s solo maintainer drops embargoed security fixes, highlighting the burden on unpaid volunteers who keep critical open source software secure.
Research
Security News
Socket researchers uncover how browser extensions in trusted stores are used to hijack sessions, redirect traffic, and manipulate user behavior.
Research
Security News
An in-depth analysis of credential stealers, crypto drainers, cryptojackers, and clipboard hijackers abusing open source package registries to compromise Web3 development environments.