惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

云风的 BLOG
云风的 BLOG
V
Visual Studio Blog
人人都是产品经理
人人都是产品经理
The GitHub Blog
The GitHub Blog
月光博客
月光博客
T
Tailwind CSS Blog
小众软件
小众软件
Y
Y Combinator Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
P
Proofpoint News Feed
B
Blog RSS Feed
博客园 - 司徒正美
A
About on SuperTechFans
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
博客园 - 聂微东
Microsoft Security Blog
Microsoft Security Blog
Recent Announcements
Recent Announcements
博客园 - Franky
U
Unit 42
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Microsoft Azure Blog
Microsoft Azure Blog
T
The Blog of Author Tim Ferriss
GbyAI
GbyAI
Apple Machine Learning Research
Apple Machine Learning Research

Socket

Fake Corepack Site Distributes Infostealer and Proxyware to ... Large-Scale GitHub Actions Abuse Powers a Distributed cPanel... New Study Identifies 53 Slopsquatting Targets Across 5 Front... White House Launches Gold Eagle Initiative to Manage Surge i... Suno Breached via Shai-Hulud Worm, Leaked Code Exposes AI Mu... Next.js moves to scheduled security releases - Socket 11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windo... Compromised npm Packages in the AsyncAPI Namespace Deliver M... jscrambler npm Package Compromised in Supply Chain Attack - ... Fake Braintree NuGet Package Skims Credit Cards and Harvests... Compromised Injective SDK npm Package Exfiltrates Wallet Key... npm v12 Ships With Install Scripts Off by Default, Begins De... Malicious Go Module Exposes GitHub Malware Lure Network Span... pnpm 11.10 Hardens Registry Authentication to Block Token Re... Coordinated npm and PyPI Campaign Typosquats Popular Secure ... Node.js Considers Public Workflow for Security Reports Amid ... PolinRider: North Korea-Linked Supply Chain Campaign Expands... Risky Biz Podcast: AI Agents Are Raising the Stakes for Soft... Chrome and Firefox Extensions Posing as Free VPNs Add Clipbo... Miasma Mini Shai-Hulud Hits ImmobiliareLabs npm Packages - S... Rolldown Pulls Rust React Compiler Integration After Binary ... Miasma Mini Shai-Hulud Hits LeoPlatform npm Packages and Git... Frontier AI Is Now Critical Infrastructure - Socket The Code You Didn't Write Is Still Yours to Defend - Socket GitHub Actions Checkout Now Blocks Risky pull_request_target... Introducing Repository Access Permissions and Custom Roles -... Socket MCP Adds Org Alerts, Threat Feed Review, and Package ... Socket Firewall Now Blocks Malicious VS Code and Open VSX Ex... 140+ Mastra npm Packages Compromised in Coordinated Supply C... npm Package Uses Prompt Injection and Token Flooding to Disr...
Socket Selected for OpenAI's Cybersecurity Grant Program
Sarah Goodin · 2026-04-17 · via Socket

Sidebar CTA Background

Secure your dependencies with us

Socket proactively blocks malicious open source packages in your code.

Install

OpenAI has named Socket as one of the initial recipients of its Cybersecurity Grant Program, a new initiative that commits $10 million in API credits to support organizations advancing cybersecurity defense.

The grant comes alongside access to more cyber-permissive frontier models through Trusted Access for Cyber, OpenAI's new identity-based framework for defensive acceleration.

Both programs select for trusted defenders with a proven track record in identifying and remediating vulnerabilities across open source software and critical infrastructure. Fellow recipients include Semgrep, Calif, and Trail of Bits.

Supporting Real-World Defense#

Socket uses OpenAI's models inside our malicious package detection pipeline, which analyzes every package and version published to npm, PyPI, and other major registries in near real time. When a package goes live, our system evaluates its code, behavior, metadata, and publishing patterns to assess risk and flag anything that looks like a supply chain attack.

The advantage of frontier models in this pipeline is speed. When attackers ship a malicious package, the window to catch it before downstream projects pull it in is small, often measured in minutes. AI-assisted analysis lets us flag suspicious behavior at a scale human review alone cannot touch.

That pipeline is what allowed Socket to identify the malicious package used in the Axios compromise within six minutes of publication. Defensive AI enables that kind of turnaround, and it is how we protect our users and the open source ecosystem.

Frontier Models Make Open Source Defense Possible at Scale#

Supply chain attacks on open source have gotten faster and more automated over the past two years. High-volume package publishing, AI-assisted malware authoring, and credential theft campaigns targeting maintainers have compressed the time between compromise and impact.

Frontier models give defenders a way to close that gap. The asymmetry that favored attackers for most of the past decade is starting to even out, and the open source ecosystem is the direct beneficiary.

Socket has been investing in this approach since before these programs existed. The OpenAI partnership extends our ability to apply frontier capabilities across the pipeline, from malicious package detection to Certified Patches, which allow for rapid, surgical fixes to known vulnerabilities in open source dependencies.

Building With the Ecosystem#

The Cybersecurity Grant Program and Trusted Access for Cyber are part of a coalition of defenders working together on AI-assisted security. Enterprises supporting the broader effort include Bank of America, BlackRock, BNY, Citi, Cisco, CrowdStrike, Goldman Sachs, JPMorgan Chase, Morgan Stanley, NVIDIA, Oracle, and Zscaler.

Programs like these create a feedback loop between frontier model development and real-world defensive use cases. For Socket, that means continuing to improve detection and mitigation across the open source ecosystem, at greater speed, accuracy, and coverage. We will keep working with OpenAI and the broader defender community to push that boundary further.