Virtual Event: Threat Detection & Incident Response Summit - Watch Now
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Funding/M&A

Socket Raises $40 Million for Supply Chain Security Tech

Socket has raised $40 million in a Series B funding round to work on open source software supply chain security technology.

Software Supply Chain Attack

Early stage startup Socket on Tuesday announced the closing of a $40 million Series B funding round that brings the total raised by the company to $65 million.

The San Francisco-based Socket said the new investment round was led by Abstract Ventures, with additional support from multiple angel investors.

Launched in May 2022, Socket is working on technology capable of constantly monitoring open source dependencies for vulnerabilities and suspicious behavior.

According to the company, its platform can proactively detect and block over 70 signals of supply chain risks in open source code immediately after it has been published to public repositories, effectively blocking zero-day supply chain attacks.

With the recently added support for Java and Ruby, Socket’s platform now covers six programming language ecosystems, protecting its customers from hidden code, malware, misleading packages, permission creep, and typo-squatting.

Socket’s technology monitors packages in real-time to detect potentially malicious updates, hijacked packages, and the introduction of risky APIs.

Advertisement. Scroll to continue reading.

Socket says its product, which is already used by organizations in the finance, manufacturing, media, and tech sectors, has been detecting and blocking more than 100 supply chain attacks per week.

The new funding will help the company accelerate product development and hire new talent in engineering, product, and sales roles, expanding its team to better meet increasing demand for its platform.

Related: OT Risk Management Firm DeNexus Raises $17.5 Million

Related: Relyance AI Raises $32 Million for Data Governance Platform

Related: Start-Ups: 10 Tips for Navigating the Headwinds Against High-Growth

Related: Xage Targets New Markets with $20 Million Investment

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

Organizations are investing heavily in third-party risk management, but breaches, delays, and blind spots continue to persist. Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice.

Register

People on the Move

Joe Chen has become Chief Technology Officer at Trellix.

Usercentrics has named Pawan Hegde as COO and Elena Ignatova as CPTO.

SecureAuth has named Mark van Oppen as Chief Revenue Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.