Articles by feross
4

Tailwind CSS Announces 75% Layoffs as LLMs Reshape OSS Business Models (socket.dev)

2

The AI will vote the shares (bloomberg.com)

63

NPM to implement staged publishing after turbulent shift off classic tokens (socket.dev)

16

Predict your house price (bloomberg.com)

1

Nvidia at CES, Vera Rubin and AI-Native Storage Infrastructure, Alpamayo (stratechery.com)

1

Nvidia and Groq, a Stinkily Brilliant Deal, Why This Deal Makes Sense (stratechery.com)

2

James Clear: How to Build Good Habits and Break Bad Ones (fs.blog)

1

Learn Phrygian in Zero Days (astralcodexten.com)

3

Happy 16th Birthday, Krebsonsecurity.com (krebsonsecurity.com)

1

The Outlier Playbook: The Patterns Behind Enduring Success (fs.blog)

1

Winter Break: December 22nd to January 2nd (stratechery.com)

1

Malicious Chrome Extensions "Phantom Shuttle" Masquerade as a VPN to Intercept (socket.dev)

3

Trump Media Discovers Nuclear Fusion (bloomberg.com)

1

Be Your Best in 2026: The Most Important Lessons from the Knowledge Project (fs.blog)

4

The Pledge (astralcodexten.com)

2

The Supply Chain Nightmare Before Deployment (socket.dev)

2

Fake Trading Is Hard Work (bloomberg.com)

1

Watt-Admin 1.0.0: Capture, Profile, and Share Your Node.js Performance Data (platformatic.dev)

1

An Interview with Rivian CEO RJ Scaringe About Building a Car Company and (stratechery.com)

1

The Video of Dumb Investment (bloomberg.com)

2

Malicious NuGet Package Typosquats Popular .NET Tracing Library to Steal Wallet (socket.dev)

2

Disney and OpenAI, Totems in an AI World, Google versus the World (stratechery.com)

2

Deno 2.6 and Socket: Supply Chain Defense in Your CLI (socket.dev)

1

Blocking Software Supply Chain Attacks (softwareengineeringdaily.com)

1

Software Engineering Daily Podcast: Feross on AI, Open Source, and Supply Chain (socket.dev)

5

The Warner Deal Will Take a While (bloomberg.com)

1

Links for December 2025 (astralcodexten.com)

2

NPM Revokes Classic Tokens, as OpenJS Warns Maintainers About OIDC Gaps (socket.dev)

2

Common Threads (pudding.cool)

1

Rust RFC Proposes a Security Tab on Crates.io for RustSec Advisories (socket.dev)

1

Release Notes for Safari Technology Preview 233 (webkit.org)

4

A Bidding War for Warner Bros (bloomberg.com)

2

LLMs Make Legal Advice Lossy (kemitchell.com)

1

2025.49: Conflicts, Consternation, and Code Red (stratechery.com)

1

Malicious Crate Mimicking 'Finch' Exfiltrates Credentials via a Hidden (socket.dev)

3

Malicious Go Packages Impersonate Google's UUID Library and Exfiltrate Data (socket.dev)

1

November CVEs Fell 25% YoY, Driven by Slowdowns at Major CNAs (socket.dev)

2

Target-text: An easy way to style text fragments (webkit.org)

4

Buy Low, Sell to Yourself (bloomberg.com)

3

Vibecession: More Than You Wanted to Know (astralcodexten.com)

1

An Interview with Atlassian CEO Mike Cannon-Brookes About Atlassian and AI (stratechery.com)

1

How to Think Like a World-Class Marketer – Rory Sutherland (fs.blog)

3

Critical Security Vulnerability in React Server Components (socket.dev)

1

Scaling Socket from Zero to 10k Organizations (socket.dev)

2

OpenAI Will Own Some Users (bloomberg.com)

1

The GitHub Infrastructure Powering North Korea's Contagious Interview NPM (socket.dev)

1

November 2025 Insiders (version 1.107) (visualstudio.com)

4

Leave the Gold in the Ground (bloomberg.com)

1

2025.47: Gemini at the Disco (stratechery.com)

1

Webhook Events for Alert Changes (socket.dev)

1

Gemini 3, Winners and Losers, Integration and the Enterprise (stratechery.com)

2

Socket Certified Patches: One-Click Fixes for Vulnerable Dependencies (socket.dev)

1

Watt v3.18 Unlocks Next.js 16's Revolutionary 'use cache' Directive with (platformatic.dev)

6

God Help Us, Let's Try to Have an Opinion on the War in Gaza (astralcodexten.com)

1

Robotaxis and Suburbia (stratechery.com)

1

Another Round of Tea Protocol Spam Floods NPM, but It's Not a Worm (socket.dev)

2

2025.46: Satellites and Strategy (stratechery.com)

1

Suggest Questions for Metaculus/ACX Forecasting Contest (astralcodexten.com)

4

An Interview with Unity CEO Matthew Bromberg About Turnarounds (stratechery.com)

2

Charlie Munger and the Psychology of Human Misjudgement (fs.blog)

1

Malicious Chrome Extension Exfiltrates Seed Phrases, Enabling Wallet Takeover (socket.dev)

1

Release Notes for Safari Technology Preview 232 (webkit.org)

2

Socket at Black Hat Europe and BSides London 2025 (socket.dev)

2

2025.45: Frothiness and the Future (stratechery.com)

1

Elon Wants His Votes (bloomberg.com)

1

An Interview with Michael Morton About AI E-Commerce (stratechery.com)

3

In What Sense Is Life Suffering? (astralcodexten.com)

1

Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads (socket.dev)

2

PolyForm Noncommercial 2.0.0-Pre.2 (kemitchell.com)

2

How Enterprise Security Is Adapting to AI-Accelerated Threats (socket.dev)

2

PolyForm Noncommercial 2.0.0-Pre.1 (kemitchell.com)

1

The Changelog Podcast: Practical Steps to Stay Safe on NPM (socket.dev)

2

Ruby Core Team Assumes Stewardship of RubyGems and Bundler, Former Maintainers (socket.dev)

8

Aisuru botnet shifts from DDoS to residential proxies (krebsonsecurity.com)

1

High Agency Matters (addyosmani.com)

4

All Public Companies Are Alike (bloomberg.com)

34

Springs and bounces in native CSS (joshwcomeau.com)

2

NPM Typosquatted Packages Deploy Multi-Stage Credential Harvester (socket.dev)

1

Socket Firewall Enterprise: Flexible, Configurable Protection For (socket.dev)

1

2025.43: The Cost of Resiliency (stratechery.com)

1

Highlights from the Comments on Fatima (astralcodexten.com)

1

New CNAPulse Dashboard Tracks CNA Activity and Disclosure Trends (socket.dev)

2

Netflix Earnings, KPop Demon Hunters and Netflix Hit Production (stratechery.com)

1

Expanding Model Choice in VS Code with Bring Your Own Key (visualstudio.com)

1

GitHub Actions Scanning Support (socket.dev)

1

Unify Your Security Stack with Socket Basics (socket.dev)

1

From Curl Commands to Type-Safe API Clients: A Complete Workflow (platformatic.dev)

1

Walmart on ChatGPT, Walmart (and Amazon) Motivations, Spotify Podcasts On (stratechery.com)

1

Jim Clayton (fs.blog)

1

Vite+ Joins the Push to Consolidate JavaScript Tooling (socket.dev)

3

Ruby Central Faces Backlash After Publishing Incident Timeline on RubyGems (socket.dev)

2

OpenAI Keeps Doing Deals (bloomberg.com)

1

OpenAI and Broadcom, ChatGPT and XPUs, AMD and Nvidia (stratechery.com)

1

Heap Profiling Support in platformatic/flame and Watt (platformatic.dev)

1

ACX Grants Results 2025 (astralcodexten.com)

1

Socket Integrates with Bun 1.3's Security Scanner API (socket.dev)

2

North Korea's Contagious Interview Campaign Escalates: 338 Malicious NPM (socket.dev)

126

It's OpenAI's world, we're just living in it (stratechery.com)

1

Next.js 16 (Beta) (nextjs.org)

49

Fascism can't mean both a specific ideology and a legitimate target (astralcodexten.com)