intelligence360
  • About us
  • Video News Daily
  • Contact Us
  • Search Icon

intelligence360

The Intelligent News Source

Socket secures $40M to combat next-generation software supply chain security attacks led by industry titans Abstract Ventures, Elad Gil, and a16z

Socket secures $40M to combat next-generation software supply chain security attacks led by industry titans Abstract Ventures, Elad Gil, and a16z

October 22, 2024 Craig Etkin

Socket safeguards companies from software supply chain attacks by detecting and preventing threats in open source code and empowering developers to secure their applications and critical services against malware and other security risks.

San Francisco, CA — October 22, 2024; With over 90% of modern applications built on open source, security has become more critical than ever. Traditional Software Composition Analysis (SCA) tools are struggling to keep up with the rising tide of supply chain attacks. Helping to tackle the problem, the #1 platform protecting software from supply chain attacks Socket, which is today announcing a $40M funding round, is laser-focused on proactively monitoring open source packages for malicious behaviors like backdoors, typo-squatting, and obfuscated code.

The Socket Series B $40M funding round was led by Abstract Ventures, with participation from Elad Gil, Andreessen Horowitz (a16z), and a stellar group of angel investors including Bret Taylor (OpenAI), Phil Venables (Google), Scott Johnston (Docker), Christina Cacioppo (Vanta), Ann Mather (Pixar, Alphabet, Netflix, Airbnb), and Tobias Lütke (Shopify), among others. This latest round brings Socket’s total funding to $65M, fueling its mission to modernize security for open source software and build out its team across engineering, product, and design.

“We’ve seen incredible momentum over the past year,” said Feross Aboukhadijeh, founder and CEO of Socket. “Our technology has made it possible for leading AI, B2B, and finance companies to switch from legacy SCA solutions like Snyk to Socket. We’re not just catching vulnerabilities — we’re detecting and blocking malicious threats in real time.”

A New Standard for Software Supply Chain Security

Socket’s platform now supports six programming languages, including newly added Java and Ruby, and handles critical use cases like license enforcement and reachability analysis — making it a comprehensive replacement for legacy tools.

“Attackers are evolving their supply chain attacks and legacy tools aren’t catching them,” said Jason Clinton, CISO at Anthropic. “Socket’s real-time threat detection helps strengthen our security posture, even from zero-day supply chain attacks.”

“As generative AI drives unprecedented speed in software development, the risk of malicious or vulnerable packages slipping through is higher than ever,” said Amjad Masad, Founder and CEO at Replit. “Socket provides preventative protection, catching threats before they can compromise organizations and enabling developers to innovate without sacrificing security.”

“If you haven’t explored Socket yet, now’s the time,” said Dev Akhawe, Head of Security at Figma.

Rapid Innovation Driving Success

In the last 12 months, Socket has shipped groundbreaking features, including AI-powered threat detection for software dependencies in six programming language ecosystems which have enabled it to detect and block over 100 software supply chain attacks every week. This pace of innovation has been key to Socket’s rapid growth, with the company now protecting over 7,500 organizations and 300,000 GitHub repositories.

“Socket is revolutionizing how companies secure their software,” said Ramtin Naimi, Founder and Managing Partner at Abstract Ventures. “As organizations face increasing software supply chain threats, Socket’s preventative and developer-friendly approach is exactly what’s needed. Socket’s ability to rip-and-replace legacy SCA tools has already made Socket the go-to solution for leading companies that want to massively up-level their application security. We’re proud to lead their Series B and support them in their mission to make open source software safer for everyone.”

The Future of Software Security

“Socket is taking an entirely new approach to one of the hardest problems in security in a stagnant part of the industry,” said Elad Gil, investor and co-founder at Color Health. “It’s rare to see a team ship this fast and deliver such a meaningful impact.

With fresh capital, Socket plans to accelerate its product development and expand its team. The company is actively hiring for roles in engineering, product, and sales as it scales to meet the growing demand for Socket’s next-gen application security platform. “We’re building a world-class team to tackle one of the most urgent challenges in software today,” said Feross.

As supply chain attacks grow more frequent and sophisticated, companies need to move beyond reactive security measures. Socket’s mission is clear: to stop supply chain threats before they’re inside your organization, providing the peace of mind that developers and security teams need to focus on what they do best — building great products.

For more information, visit https://socket.dev and join the team that’s reshaping the future of software security.

About Socket

Socket is a developer-first security platform that protects your most critical apps from software supply chain attacks. Socket was built by prolific security experts whose open source software is installed over 1 billion times per month. Customers include top organizations in tech, media, manufacturing, and finance.

Investor Quotes:

  • Ramtin Naimi, Founder and Managing Partner at Abstract Ventures: “Enterprises that adopt Socket are realizing an immediate ROI by cutting the massive burden of managing endless security alerts and proactively preventing costly software supply chain compromise. Socket has emerged as the enterprise developer standard and the central hub for companies to secure their open source dependencies.”
  • Elad Gil, investor and co-founder at Color Health: “Socket is taking an entirely new approach to one of the hardest problems in security in a stagnant part of the industry. It’s rare to see a team ship this fast and deliver such a meaningful impact. I’m thrilled to have a chance to work with them on their incredible growth trajectory.”
  • Zane Lackey, General Partner at Andreessen Horowitz and Co-founder at Signal Sciences: “This team knows how to build products that developers love, they understand security, and they’re tackling an urgent problem for a community they’ve been part of for more than two decades.”
  • Martin Casado, General Partner at Andreessen Horowitz: “Socket shows all the signs of becoming an iconic security company.”
  • Scott Johnston, CEO at Docker: “At Docker, we’re all about helping developers build securely and productively. Socket is a perfect complement to that mission, catching vulnerabilities and malicious code early in the process. It’s a critical tool for anyone working with open source, and developers are adopting it quickly.”
  • Christina Cacioppo, Co-founder and CEO at Vanta: “Scaling securely means building trust—and compliance is a big part of that. Socket’s new approach to vulnerability management adds meaningful depth to application security, providing the visibility needed to build confidence and meet compliance goals by staying ahead of emerging risks.”
  • Dylan Field, Co-founder and CEO at Figma: “As a long time open source maintainer, Feross knows the challenges of supply chain attacks better than anyone. Socket’s vision for securing the software supply chain tackles a complex problem with a developer-first approach, and I believe they have an opportunity to build a generational security platform.”
  • Dane Stuckey, Chief Information Security Officer: “Modern software is built on open-source, and our adversaries have learned that software supply chain attacks are one of the most successful ways to penetrate organizations. Nation-state actors in particular have invested substantial time, energy, and resources to target critical infrastructure via these methods. Socket is a critical partner in preventing these attacks by identifying malicious third party code in supply chain components. High-security organizations, including governments and defense, need to adopt a zero-trust approach not only for their networks, but for all the software components which they build their enterprises on. Socket gives organizations the tools needed to vet, interrogate, and secure their systems early, rather than reacting after a threat is discovered. I’m excited about what they’re building, and the impact it can have in institutions where security is non-negotiable.”
  • Ryan Dahl, Node.js inventor & Deno co-founder & CEO: “As the inventor of Node.js and Deno, I know the critical need for better safeguards in the open-source ecosystem. Socket addresses a key gap by proactively stopping harmful dependencies before they can cause issues. Socket lets developers build with confidence without compromising engineering velocity.”

Customer Quotes:

  • Jason Clinton, CISO at Anthropic: “Attackers are evolving their supply chain attacks and legacy tools aren’t catching them. Socket’s real-time threat detection helps strengthen our security posture, even from zero-day supply chain attacks.”
  • Guillermo Rauch, Founder and CEO at Vercel: “At Vercel, we care about giving developers tools to build, scale, and secure a faster web. Socket is one of the rare companies that enables security without compromising developer experience. Customers can adopt the latest open-source tools without second-guessing every dependency. That’s a game-changer.”
  • Devdatta Akhawe, Chief Information Security Officer at Figma: “Socket is a natural fit for us because it’s frictionless and doesn’t get in the way of developers.”
  • Amjad Masad, Founder and CEO at Replit: “As generative AI drives unprecedented speed in software development, securing the software supply chain has become mission-critical. With AI-powered tools generating the majority of new code and even importing third-party dependencies, the risk of malicious or vulnerable packages slipping through is higher than ever. Socket provides preventative protection, catching threats before they can compromise organizations and enabling developers to innovate without sacrificing security.”
  • Aaron Davis, MetaMask founder: “Managing a large dependency graph when security is mission critical can be an overwhelming task. With Socket, we get actionable insights right in the pull request. This helps keep MetaMask safe without slowing down development velocity. We’re excited to see them grow with this new investment.”
  • Yan Zhu, Chief Information Security Officer at Brave: “For many years, organizations have been installing open source dependencies without insight into potential vulnerabilities and issues. Socket is like an X-ray into open source dependencies, going above and beyond to detect issues that aren’t yet known vulnerabilities within the security community. It’s so easy-to-use, it’s a no-brainer.”
  • Aaron Brown, Head of Security at Vercel: “Socket goes beyond relying solely on CVEs or third-party sources for threat intelligence. They conduct first-hand analysis to identify unknown issues in open-source dependencies before they can impact our code. Early detection, coupled with supporting documentation, means Socket not only strengthens our security but also saves valuable time and resources that would otherwise be spent on remediation efforts.”
  • More love from our supporters and customers.

Series B Investors

Lead investor:

  • Abstract Ventures 

With participation from existing investors:

  • Andreessen Horowitz (a16z)
  • Elad Gil, Color Genomics founder, prolific investor & advisor
  • Dylan Field, Figma founder & CEO
  • WndrCo, former Dreamworks and Dropbox team

Joined by new investors:

  • Bret Taylor, OpenAI chairman of board; former Facebook CTO
  • Christina Cacioppo, Vanta co-founder & CEO
  • Phil Venables, Google Cloud CISO
  • Ann Mather, former Pixar EVP & CFO; board member Alphabet, Netflix, Airbnb, Arista Networks, & Blend
  • Jerry Yang, Yahoo co-founder & former CEO; Stanford Board of Trustees
  • Mike Vernal, former Sequoia partner; former Facebook VP Product
  • Ryan Dahl, Node.js inventor; Deno co-founder & CEO
  • Jeff Lawson, Twilio co-founder & former CEO
  • Scott Johnston, Docker CEO
  • Tobias Lütke, Shopify co-founder & CEO
  • Alex Bouaziz, Deel co-founder & CEO
  • Michael Grinich, WorkOS founder & CEO
  • Shyam Sankar, Palantir CTO
  • Dane Stuckey, CISO
  • David Cramer, Sentry co-founder & CPO
  • Waseem Alshikh, Writer AI co-founder & CTO
  • Matt MacInnis, Rippling COO
  • Aaron Zollman, Cedar Health CISO & VP, Platform Engineering
  • Daniel Hooper, Robinhood CISO
  • Amjad Masad, Replit founder & CEO
  • Ross Hosman, Drata former CISO
  • Will Bengston, HashiCorp VP Security Engineering & Operations
  • Shrav Mehta, Secureframe founder & CEO
  • Peter Wang, Anaconda co-founder & Chief AI and Innovation Officer
  • Matt Kraning, Palo Alto Networks Cortex CTO; Expanse founder & CTO (acq. Palo Alto Networks)
  • Kanjun Qiu, Imbue co-founder & CEO
  • Josh Albrecht, Imbue co-founder & CTO; Outset Capital General Partner
  • Qasar Younis, Applied Intuition CEO
  • Raj Neervannan, Alphasense founder & CTO
  • Zach Holman, early GitHub employee
  • Martin Choluj, Clickhouse, VP of Security
  • Ben Vinegar, Syntax.fm General Manager; former Sentry VPE
  • Matteo Collina, Platformatic founder & CTO; Node.js TSC; Fastify creator & lead maintainer
  • Jerod Santo, Changelog Media founder
  • Victor Pontis, Luma co-founder
  • GTM Operators Network (including GitHub VP Customer Success)
  • Cooley LLP (GC&H Investments), premier global law firm

SOURCE: http://www.intelligence360.io
Copyright (c) 2020 SI360 Inc. All rights reserved


Venture Capital
California, San Francisco, Socket, Venture Capital

Post navigation

NEXT
Kairos Power plans expansion in Albuquerque New Mexico creating 100 new jobs.
PREVIOUS
CloudZero has filed a notice of an exempt offering of securities to raise $6 Million in New Equity Investment.
Comments are closed.

Source: http://go.intelligence360.io/ and https://intelligence360.news/

Fabric, a leader in care delivery and consumer experience, has announced the acquisition of UCM Digital Health (UCM), a leading digital health and telehealth provider. The acquisition expands Fabric's services to about 400 new employer and payer customers, adding one million covered lives. Fabric now serves over 75 health systems, 30,000 employers, and over 100 million lives across all 50 states. This marks Fabric’s fifth acquisition in less than three years, underscoring its strategic build-and-buy approach to unify the fragmented digital health landscape. By expanding its footprint in the payer and employer markets, Fabric is extending its comprehensive care access and experience platform paired with its nationwide provider network to streamline virtual-first care, expand access, improve efficiency and outcomes, and reduce both medical and overhead costs.

In a statement Aniq Rahman, CEO and Founder of Fabric said, "For Fabric, it’s about making healthcare more accessible.” “We’ve already made meaningful progress in the payer and employer markets, and this acquisition allows us to deepen that impact. By bringing more payers and employers onto our platform, we’re creating a connected experience that streamlines workflows, reduces friction and costs, and ultimately drives better outcomes for members and our partners." Moving forward, the 400 payers and employers served by UCM will transition to Fabric’s expanded technology and clinical network, gaining access to enhanced omnichannel patient experiences that improve efficiency before, during, and after virtual care. Through Fabric’s nationwide provider network, patients can receive a treatment plan for most common medical conditions in just five minutes or connect with a behavioral health provider within three days.

Fabric is a health tech company on a mission to solve healthcare’s access problem. Fabric’s integrated care platform offers personalized guidance, streamlines workflows, and unifies experiences across virtual and in-person care. Its solutions support care delivery from a patient’s first search to post-treatment follow-up using its proprietary Hybrid AI that combines conversational AI and physician-built clinical logic. Together with a nationwide network of medical and behavioral health providers, Fabric is realizing its vision of providing care for everyone, everywhere. The company advances connected delivery that improves access, outcomes, and equity across every stage of the patient journey. Today, Fabric serves 30,000 employers, payers, and enterprise organizations, including OSF HealthCare, MUSC Health, Highmark, and Intermountain Health. Fabric is backed by General Catalyst, Thrive Capital, GV (Google Ventures), Salesforce Ventures, Vast Ventures, BoxGroup, and Atento Capital.
Source: http://go.intelligence360.io/ and https://intelligence360.news/

Flex has closed a $60 million Series B equity round led by Portage, bringing total equity raised to $105 million. In the last year, the company has quadrupled revenue and tripled its payments volume to $3 billion as it scales its all-in-one business and personal finance platform for high-net-worth middle-market business owners. Running a profitable middle-market business has become one of the most complex financial jobs in America, with owners often juggling more than ten disconnected systems to manage their money. Flex was created to give these high net worth owners a single place to run both their business and personal finances. This latest $60 Million equity round, followed by its $200 Million debt and $25 Million equity raise announced earlier this year, builds on a period of rapid hypergrowth. In just 12 months, Flex has grown revenue fourfold and increased annualized total payments volume from $1 billion to $3 billion across a suite of products, positioning Flex as one of the fastest-growing fintech companies at scale with best-in-class capital efficiency.

Flex is building the category-defining company solving this gap for high net worth business owners with a five-pillar strategy built around private credit, a business finance stack, a personal finance stack, payment solutions, and an ERP built for middle market businesses. These customers now use an average of four or more Flex products. Flex’s Business Credit Card, which provides 60-day float on every transaction, has been a major driver of adoption, acting as the wedge into deeper financial operations. Once owners experience the benefits of the Flex Credit Card, they often go on to adopt Flex’s banking, payments, working capital, and expense management tools to replace fragmented legacy systems. This integrated model has allowed Flex to scale with high efficiency and has created a strong foundation for its expansion into personal finance.

Launched in 2023, Flex a Flexbase Technologies brand is the AI Native “Private Bank” for high net worth business owners in the middle market. Flex is building the category-defining company solving this gap for high net worth business owners with a five-pillar strategy built around private credit, a business finance stack, a personal finance stack, payment solutions, and an ERP built for middle market businesses. Flex is the first platform that supports every step of their financial lives, from the moment they earn revenue to the moment they spend it personally.
Source: http://go.intelligence360.io/ and https://intelligence360.news/

Across the United States, a new industrial age is taking shape. Trillions of dollars in infrastructure, from energy projects and advanced manufacturing to data centers and critical mineral facilities, must be built in the next decade. But large construction projects are slower and more expensive today than they were half a century ago. Unlimited Industries, a California-based company using AI to rethink how infrastructure gets built, has raised $12 million in seed funding to change that. The round was co-led by Andreessen Horowitz and CIV, with participation from leading industry investors. The capital will accelerate Unlimited’s expansion and further develop its proprietary AI platform – one designed to make large-scale engineering and construction faster, cheaper, and more ambitious.

Unlike traditional construction firms or standard software companies, Unlimited is an AI-native construction company that both designs and builds. Its proprietary platform can generate and evaluate hundreds of thousands of design configurations in parallel, automatically identifying optimal layouts for cost, safety, and performance before construction begins. By integrating AI-driven design with its own vertically integrated engineering and construction teams, Unlimited eliminates the costly handoffs and misaligned incentives that have defined the industry for decades.

In a statement Alex Modon, Co-Founder and CEO of Unlimited Industries said, “Advances in AI mean we can finally build the physical world the way we build software.” “The traditional construction model is slow, brittle, and fundamentally misaligned. Our approach replaces static design choices with a dynamic, data-driven process that learns from every project. The result is faster, cheaper, and more successful projects.”

Unlimited is an AI-native construction company headquartered in San Francisco. Today, the company designs and builds across energy infrastructure, data centers, critical minerals, and advanced manufacturing, helping developers build with greater speed, ambition, and efficiency. Their mission is to build a future of radical physical abundance by automating construction end-to-end. The company was founded in 2025 by serial founders Alex Modon, Jordan Stern, and Tara Viswanathan.
Subscribe

Categories

Recent Posts

  • Hypha has raised $50 Million in new funding June 17, 2026
  • IonQ plans expansion in Bothell Washington creating 1,200 new jobs. June 17, 2026
  • Virginia Transformer plans expansion in Rincon Georgia creating 400 new jobs. June 17, 2026
  • Barilla plans expansion in Avon New York creating 90 new jobs. June 17, 2026

Archives

© 2026   Copyright SI360 Inc. All Rights Reserved.