Back to changelog
August 20, 2026

Socket now scans every Firefox extension listed in Mozilla’s official add-ons directory and monitors new releases for changes in permissions, code, network activity, and behavior. Analysis covers extension metadata, active sites, package files, network endpoints, malware, credential and clipboard theft, data exfiltration, remote loading, obfuscation, impersonation, and related campaign activity.
Firefox coverage is available in Experimental for Enterprise customers. Contact your Socket account team to enable it, and read the announcement for more details.