Philipp Burckhardt

Philipp Burckhardt is Lead Data Scientist at Socket (socket.dev), where he is helping to secure software supply chains by utilizing artificial intelligence.

Together with Athan Reines, he is engaged in the development of a standard library for JavaScript bringing numerical and statistical computing to the web (https://github.com/stdlib-js/stdlib). An avid open-source contributor, he has spoken at various international conferences on topics ranging from political science, health-care informatics to machine learning and software engineering.

He holds a PhD ins Statistics & Data Science from Carnegie Mellon University,

The speaker's profile picture

Sessions

10-27
15:40
25min
Securing Open Source Supply Chains with LLMs
Mikola Lysenko, Philipp Burckhardt

Socket Security employs a unique blend of static analysis and AI reasoning to detect malicious packages within npm and pypi registries. Our system has flagged over 6,000 threats in real time, showcasing its efficacy in scaling across 190,000+ repositories and hundreds of millions of unique package versions. We will discuss some of the challenges and tricks we've used to get this system working and give some general thoughts on prompt engineering for data mining applications.

Main stage