Socket is a San Francisco, CA-based startup that fights security vulnerabilities and provides visibility, defence-in-depth and proactive supply chain protection for JavaScript and Python dependencies. It was reported that it raised $ 20 million in the Series A financing round. Investment round; Abstract Ventures, Wndrco, Michael Ovitz, Arash Ferdowsi, Jawed Karim, Aaron Levie, Elad Gil, Dylan Field, Nat Friedman, Julia and Kevin Hartz, Guillermo Rauch, Freddy Kerrest. It was also directed by Andreessen Horowitz (a16z).
Also See: Turkish Foodtech Startup Sorb Receives Investment
Cyber Security Startup Socket

Led by Founder/CEO Feross Aboukhadijeh, Socket provides an addiction management platform that uses “content-based analytics” to analyse addiction behaviour and understand open source risk. In the meantime, it should be noted that with the new investment of $ 20 million, the total investment received by the startup to date has reached $ 24.6 million. According to the information obtained by Socket, what will the new investment be used for? It was stated that it will be used to support more programming languages as well as expanding the company’s team.
- Security teams rely on Socket to prevent malicious open source dependencies from infiltrating their applications.
- Socket dramatically improves your open source security posture by detecting and blocking unexpected attacks (malware, hidden code, typos, and more) that are not caught by CVE vulnerability scanners.
- Block typos – Block malicious packages with only a few characters different in the name and recommend the correct package
- Block malware – Block emerging malware threats
- Detect secret code – Detect obfuscated, minimised or hidden code
- Detect use of privileged APIs – Detect use of risky APIs – file system, network, child_process, environment variables, eval()
- Detect suspicious updates – Detect updates that significantly change package behaviour
- Open source code makes up 90 per cent of most code bases. It is essential to manage it effectively to reduce your organisation’s security risk.