6 papers
FirmPilot: Evidence-Guided Multi-Agent Environment Recovery for IoT Firmware Rehosting
Yanbing Shen, Fan Zhang, Haitao Xu
Firmware rehosting executes firmware images in emulated environments such as QEMU to enable scalable dynamic analysis of Internet of Things (IoT) devices. In practice, rehosting pi…
Minos: A Multi-Agent Collaborative Framework for Provenance-Based Backward Tracking
Jiahui Wang, Zhenyuan Li, Zhengkai Wang +2
Sophisticated cyber attacks, particularly Advanced Persistent Threats (APTs), require effective post-intrusion forensic analysis. Provenance-based backward tracking reconstructs at…
Vul-LMGNNs: Fusing language models and online-distilled graph neural networks for code vulnerability detection
Ruitong Liu, Yanbin Wang, Haitao Xu +4
Code Language Models (codeLMs) and Graph Neural Networks (GNNs) are widely used in code vulnerability detection. However, GNNs often rely on aggregating information from adjacent n…
TransURL: Improving malicious URL detection with multi-layer Transformer encoding and multi-scale pyramid features
Ruitong Liu, Yanbin Wang, Zhenhao Guo +4
Machine learning progress is advancing the detection of malicious URLs. However, advanced Transformers applied to URLs face difficulties in extracting local information, character-…
PMANet: Malicious URL detection via post-trained language model guided multi-level feature attention network
Ruitong Liu, Yanbin Wang, Haitao Xu +4
The proliferation of malicious URLs has made their detection crucial for enhancing network security. While pre-trained language models offer promise, existing methods struggle with…
Marlin: Knowledge-Driven Analysis of Provenance Graphs for Efficient and Robust Detection of Cyber Attacks
Zhenyuan Li, Yangyang Wei, Xiangmin Shen +9
Recent research in both academia and industry has validated the effectiveness of provenance graph-based detection for advanced cyber attack detection and investigation. However, an…