Socket Announces $40M Funding Round to Tackle Rising Risks in Open-source Software Supply Chains

Socket, a software security startup founded by Stanford lecturer and open-source expert Feross Aboukhadijeh, has secured $40 million in Series B funding to fortify its open-source software security tools. Backed by notable investors including Andreessen Horowitz, Elad Gil, and Yahoo co-founder Jerry Yang, the funding aims to scale Socket’s platform, which provides real-time monitoring of security vulnerabilities in code dependencies and open-source libraries.

Aboukhadijeh noted that traditional tools fail to fully address modern software risks, especially given the intricate web of dependencies found in today’s software. He explained that external dependencies pose substantial risks, despite rigorous internal checks, as they introduce hard-to-detect software supply chain vulnerabilities. Socket’s solution is a scanner that detects potential threats like backdoors and data-exfiltration code, alerting developers to new or updated dependencies.

Socket’s platform integrates with generative AI APIs from OpenAI and Anthropic, enabling it to deliver AI-powered vulnerability summaries and provide licensing checks to ensure legal reusability of open-source code. “Socket is designed for engineering teams heavily reliant on open source,” Aboukhadijeh said, highlighting that it integrates directly into development workflows and minimizes false positives.

The startup’s high-performance detection system identifies over 100 zero-day supply chain attacks weekly and currently protects more than 300,000 code repositories for clients, including prominent names like Anthropic, Harvey, and Vercel. Socket’s new funds, which bring its total raised to $65 million, will drive the company’s growth, with plans to expand the team to 50 by year-end and further advance its security and AI-driven technologies to address evolving threats.

Featured image: Credit: Socket

Need Deeper Intelligence on the AI Market?

AI Insider's Market Intelligence platform tracks funding rounds, competitive landscapes, and technology trends across the global AI ecosystem in real time. Get the data and insights your organization needs to make informed decisions.

Related Articles

WISeKey and SEALSQ Launch Website Outlining Development of Post-Quantum Robot Security Platform

Insider Brief WISeKey and its subsidiary SEALSQ launched WISeRobot.ch, a website and development hub outlining their roadmap for AI-powered robotics secured with post-quantum cybersecurity technology.

OpenAI and Google Unite on AI Image Authentication to Combat Deepfakes

OpenAI has announced two complementary measures to help users identify AI-generated images, partnering with Google on technology that addresses one of the most pressing challenges

Google I/O 2026: How the Search Giant Is Rebuilding Itself Around Agentic AI

Google used its annual I/O developer conference on Tuesday to unveil the most sweeping transformation of its product lineup in years, placing agentic artificial intelligence

Stay Updated with AI Insider

Get the latest AI funding news, market intelligence, and industry insights delivered to your inbox weekly.

$ 0 M

Seed round tracked

Gitar — Code Validation

Get the Weekly Briefing

Funding analysis, market intelligence, and industry trends delivered to your inbox every week.

Need bespoke intelligence?

Our team combines real-time data with decades of sector experience to guide your decisions.

Subscribe today for the latest news about the AI landscape