
Security News
Node.js TSC Votes to Stop Distributing Corepack
Corepack will be phased out from future Node.js releases following a TSC vote.
Company News
Feross Aboukhadijeh
February 14, 2023
Socket is proud to be a member of the Open Source Security Foundation (OpenSSF) and do our part to make open source safe for everyone. OpenSSF initiatives are helping to bring a new developer-oriented focus to software security.
Today, we're excited to nominate Bradley Meck Farias as a General Membership Representative to the OpenSSF Governing Board.
Bradley is a veteran participant in OSS for over a decade; he has participated in various organizations such as ECMA TC39 and the Node.js Foundation. He has been a host of the Node.js podcast "Node Up", written technical books including "Node.js in Action", and published workshops on programming effectively. His OSS accomplishments include working on Node.js' core functionality, working on JavaScript language proposals, and a multitude of OSS utility libraries. He worked as an OSS developer while at GoDaddy for multiple years helping to open source and maintain multiple libraries.
Bradley will be an invaluable addition to the OpenSSF board. The variety of experience he brings to the table is vast – from shepherding proposals through standards bodies, writing books, hosting podcasts, creating security software, and writing OSS for decades – stakeholders can count on Bradley to push for progress and community agreement during standards discussions and ensure that OpenSSF fairly represents all constituents in the open source ecosystem.
At Socket, we're not just shipping a useful security product for our customers – we're committed to safeguarding the open source ecosystem for everyone.
Thank you to the forward-thinking developers, security leaders, and open source maintainers who have supported Bradley so far. To those who haven't yet voted, we encourage you to support Bradley Meck Farias as a General Membership Representative to the OpenSSF Governing Board.
Subscribe to our newsletter
Get notified when we publish new security blog posts!
Try it now
Security News
Corepack will be phased out from future Node.js releases following a TSC vote.
Research
Security News
Research uncovers Black Basta's plans to exploit package registries for ransomware delivery alongside evidence of similar attacks already targeting open source ecosystems.
Security News
Oxlint's beta release introduces 500+ built-in linting rules while delivering twice the speed of previous versions, with future support planned for custom plugins and improved IDE integration.