Hacker News new | ask | show | jobs
user: feross
created: 2009-09-01
karma: 48014

Founder & CEO, Socket <https://socket.dev> – Socket makes a developer-first security platform that prevents vulnerable and malicious open source dependencies from infiltrating your software supply chain.

Stanford visiting lecturer, CS 253 Web Security <https://cs253.stanford.edu> – Principles of web security, attacks and countermeasures, and more...

Open source maintainer – 100+ open source packages on npm, including WebTorrent <https://webtorrent.io>, StandardJS <https://standardjs.com>, BitMidi <https://bitmidi.com>, simple-peer <https://github.com/feross/simple-peer>, and more <https://socket.dev/npm/user/feross>.

You can reach me at {my username}@feross.org, or find out more on my website: https://feross.org/resume

[ my public key: https://keybase.io/feross; my proof: https://keybase.io/feross/sigs/gO6pVIJ1DXdy9Y21yil6nlyk_by5BE_GaaWOOQJ5PvQ ]

submissions:

PyPI Fixes High-Severity Access Control Issues Found in Security Audit
1 points | 0 comments
0 points | 0 comments
Axios Maintainer Confirms Social Engineering Attack Behind NPM Compromise
5 points | 0 comments
The Hidden Blast Radius of the Axios Compromise
6 points | 0 comments
Trivy Supply Chain Attack Expands to Compromised Docker Images
5 points | 3 comments
0 points | 0 comments
Malicious NPM Packages Use Pastebin Steganography to Deploy Credential Stealer
2 points | 0 comments
Malicious Go "Crypto" Module Steals Passwords and Deploys Rekoobe Backdoor
3 points | 0 comments
Shai-Hulud-Style NPM Worm Hijacks CI Workflows and Poisons AI Toolchains
8 points | 0 comments
First Brands Did Some Round Trips
1 points | 0 comments
15 Years of Blogging
2 points | 1 comments
When will CSS Grid Lanes arrive?
50 points | 27 comments
2026.05: The Chip Fly in the AI Ointment
1 points | 0 comments
Put a Pin in It
1 points | 0 comments
Building a browser API in one shot
3 points | 0 comments
Kimwolf Botnet Lurking in Corporate, Govt. Networks
19 points | 0 comments
Michael Ovitz: The Business of Relationships
1 points | 0 comments
Best of Moltbook
92 points | 37 comments
GlassWorm Loader Hits Open VSX via Developer Account Compromise
3 points | 0 comments
Ads in ChatGPT, Why OpenAI Needs Ads, the Long Road to Instagram
1 points | 0 comments
Turbopack: Building faster by building less
47 points | 23 comments
2026.03: Technology Doings
1 points | 0 comments
Temporal API Ships in Chrome 144, Marking a Major Shift for JavaScript Date
3 points | 1 comments
Stablecoin Narrow Banking
1 points | 0 comments
An Interview with United CEO Scott Kirby About Tech Transformation
1 points | 1 comments
New Safari developer tools provide insight into CSS Grid Lanes
123 points | 74 comments
Meta Compute, the Meta-OpenAI Battle, the Reality Labs Sacrifice
2 points | 0 comments
SOTA on Bay Area House Party
9 points | 1 comments
Apple and Gemini, Foundation vs. Aggregation, Universal Commerce Protocol
2 points | 0 comments
Paramount wants Warner to show its work
2 points | 0 comments