Skip to main content
Phil Venables

Phil Venables

Computer scientistWikipedia

Search complete. 4 mentions across 4 episodes found for "Phil Venables".

Sep 22, 2026

Mike ShemaHOST
52:21
I'm going to use that.
Mike ShemaHOST
52:25
Speaking of measuring things, I've got an article here from Phil Venables, which we try to get at least half a dozen of his every year.
Mike ShemaHOST
52:32
This is Cybersecurity Benchmarking, Why, Why Not, When, and How.
Mike ShemaHOST
52:38
I think this ties into, obviously, a lot of just, is this LLM good at coding? Is it good at secure coding? Is it good at hacking? Can it hit exploit gym, etc.? ? But I think the principles of this article obviously apply more than to just LLMs.
Mike SchemaHOST
52:20
Well, I'm going to use that.
Mike SchemaHOST
52:22
So speaking of measuring things, I've got an article here from Phil Venables, which we try to get at least half a dozen of his every year.
Mike SchemaHOST
52:32
This is Cybersecurity Benchmarking, Why, Why Not, When, and How.
Mike SchemaHOST
52:38
And I think this ties into, obviously, a lot of just, is this LLM good at coding? Is it good at secure coding? Is it good at hacking? Can it hit exploit gym, etc.? ? But I think the principles of this article obviously apply more than to just LLMs.
Mike SchemaHOST
52:22
So speaking of, uh, having, having...
Mike SchemaHOST
52:25
Speaking of measuring things, I've got an article here from, from Phil Venables, uh, which we try to get at least half a dozen of his every year.
Mike SchemaHOST
52:32
This is "Cyber Security Benchmarking: Why, Why Not, When and How?" And I think this ties into obviously a lot of just is this LLM good at coding? Is it good at secure coding? Is it good at hacking? Does it, can it hit exploit Jim, et cetera? But I think the principles of this article obviously apply more than to just LLMs, and if I were tr- if I were to try to summarize it, he's basically saying we as AppSec industry, cyber security industry, should be trying to look for m- things that are more proactive activities and leading indicators that say, "Oh, here is a problem.
Mike SchemaHOST
53:09
Let's, let's put some attention on this problem." And it's a think, I think it's a very helpful call back to what Tyler was saying, is that if we're just measuring all these vulnerabilities, look at all these vulns we find, that's a little bit of, or that's a lot of a lagging indicator where the reactive activity just becomes, well, patch it.
Mike SchemaHOST
52:21
I'm going to use that.
Mike SchemaHOST
52:25
Speaking of measuring things, I've got an article here from Phil Venables, which we try to get at least half a dozen of his every year.
Mike SchemaHOST
52:32
This is Cybersecurity Benchmarking, Why, Why Not, When, and How.
Mike SchemaHOST
52:38
I think this ties into, obviously, a lot of just, is this LLM good at coding? Is it good at secure coding? Is it good at hacking? Can it hit exploit gym, etc.? ? But I think the principles of this article obviously apply more than to just LLMs.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.