Securing the Software Supply Chain with LLMs
AI + a16z3 Touko 2024

Securing the Software Supply Chain with LLMs

Socket Founder and CEO Feross Aboukhadijeh joins a16z's Joel de la Garza and Derrick Harris to discuss the open-source software supply chain. Feross and Joel share their thoughts and insights on topics ranging from the recent XZutils attack to how large language models can help overcome understaffed security teams and overwhelmed developers.

Despite some increasingly sophisticated attacks making headlines and compromising countless systems, they're optimistic that LLMs, in particular, could be a turning point for security blue teams. As Feross sums up one possibility:

"The way we think about gen AI on the defensive side is that it's not as good as a human looking at the code, but it's something. . . . Our challenge is that we want to scan all the open source code that exists out there. That is not something you can pay humans to do. That is not scalable at all. But, with the right techniques, with the right pre-filtering stages, you can actually put a lot of that stuff through LLMs and out the other side will pop a list of of risky packages.

"And then that's a much smaller number that you can have humans take a look at. And so we're using it as a tool . . . to find the needle in the haystack, what is worth looking at. It's not perfect, but it can help cut down on the noise and it can even make this problem tractable, which previously wasn't even tractable."

More about Socket and cybersecurity:

Socket

Investing in Socket

Hiring a CISO

Follow everyone :

Feross Aboukhadijeh

Joel de la Garza

Derrick Harris

Check out everything a16z is doing with artificial intelligence here, including articles, projects, and more podcasts.

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Jaksot(94)

Inferact: Building the Infrastructure That Runs Modern AI

Inferact: Building the Infrastructure That Runs Modern AI

Inferact is a new AI infrastructure company founded by the creators and core maintainers of vLLM. Its mission is to build a universal, open-source inference layer that makes large AI models faster, ch...

22 Tammi 43min

How Should AI Be Regulated? Use vs. Development

How Should AI Be Regulated? Use vs. Development

To Regulate AI Effectively, Focus on How It’s UsedA conversation with Martin Casado on learning from past computing platform shifts, understanding marginal risk in AI, and why open source matters for ...

20 Tammi 46min

Michael Truell: How Cursor Builds at the Speed of AI

Michael Truell: How Cursor Builds at the Speed of AI

When four MIT grads decided to build a code editor while everyone else was building AI agents, they created the fastest-growing developer tool ever built. Cursor CEO Michael Truell joins a16z’s Martin...

13 Tammi 27min

Dylan Patel on the AI Chip Race - NVIDIA, Intel & the US Government

Dylan Patel on the AI Chip Race - NVIDIA, Intel & the US Government

Nvidia’s $5 billion investment in Intel is one of the biggest surprises in semiconductors in years. Two longtime rivals are now teaming up, and the ripple effects could reshape AI, cloud, and the glob...

6 Tammi 1h 40min

Feed Drop from The Generalist: Why a16z's Martin Casado believes the AI boom still has years to run

Feed Drop from The Generalist: Why a16z's Martin Casado believes the AI boom still has years to run

This episode is a special replay from The Generalist Podcast, featuring a conversation with a16z General Partner Martin Casado. Martin has lived through multiple tech waves as a founder, researcher, a...

30 Joulu 20251h 21min

Fei-Fei Li: World Models and the Multiverse

Fei-Fei Li: World Models and the Multiverse

What if the next leap in artificial intelligence isn’t about better language—but better understanding of space?In this episode, a16z General Partner Erik Torenberg moderates a conversation with Fei-Fe...

23 Joulu 202522min

Building the “See Something, Say Something” AI for Every Camera

Building the “See Something, Say Something” AI for Every Camera

a16z's Martin Casado sits down with Shikhar Shrestha, CEO and cofounder of Ambient, the company bringing agentic AI to physical security.Shikhar shares how a traumatic armed robbery at age 12—and a se...

16 Joulu 202539min

The AI That Found A Bug In The World’s Most Audited Code

The AI That Found A Bug In The World’s Most Audited Code

Matt Knight spent five years as OpenAI’s CISO. Now he runs what colleagues call “the most interesting job at the company”: leading Aardvark, an AI agent that finds security vulnerabilities the way a h...

10 Joulu 202539min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
psykopodiaa-podcast
rss-rahapodi
rss-rahamania
hyva-paha-johtaminen
inderespodi
ostan-asuntoja-podcast
rss-lahtijat
rahapuhetta
rss-sisalto-kuntoon
herrasmieshakkerit
taloudellinen-mielenrauha
oppimisen-psykologia
rss-porssipuhetta
rss-bisnesta-bebeja
rss-yrittajan-mielenmatka
rss-kohti-unelmia
rss-seuraava-potilas
rss-40-ajatusta-aanesta