activity
20182026
most citedAdvancing TTP Analysis: Harnessing the Power of Large Language Models with Retrieval Augmented Generation

25 citations · 49 across the 10 of their papers we have counts for

collaborators
Showing cs.CRShow all

12 papers · 1 filter

cs.CR2026

Topological Attribution Distance (TAD): Revealing Segment-Level RAG Influence on LLM Output Geometry for Incident Log Analysis

Reza Fayyazi, Michael Zuzak, Shanchieh Jay Yang

Large Language Models (LLMs) are increasingly being deployed in cybersecurity operations to assist cybersecurity analysts with rapid decision-making against emerging threats. Howev…

cs.CR2025

Guided Reasoning in LLM-Driven Penetration Testing Using Structured Attack Trees

Katsuaki Nakano, Reza Fayyazi, Shanchieh Jay Yang +1

Recent advances in Large Language Models (LLMs) have driven interest in automating cybersecurity penetration testing workflows, offering the promise of faster and more consistent v…

cs.CR2025

LLM Embedding-based Attribution (LEA): Quantifying Source Contributions to Generative Model's Response for Vulnerability Analysis

Reza Fayyazi, Michael Zuzak, Shanchieh Jay Yang

Large Language Models (LLMs) are increasingly used for cybersecurity threat analysis, but their deployment in security-sensitive environments raises trust and safety concerns. With…

cs.CR20248 cited

ProveRAG: Provenance-Driven Vulnerability Analysis with Automated Retrieval-Augmented LLMs

Reza Fayyazi, Stella Hoyos Trueba, Michael Zuzak +1

In cybersecurity, security analysts constantly face the challenge of mitigating newly discovered vulnerabilities in real-time, with over 300,000 vulnerabilities identified since 19…

cs.CR202425 cited

Advancing TTP Analysis: Harnessing the Power of Large Language Models with Retrieval Augmented Generation

Reza Fayyazi, Rozhina Taghdimi, Shanchieh Jay Yang

Tactics, Techniques, and Procedures (TTPs) outline the methods attackers use to exploit vulnerabilities. The interpretation of TTPs in the MITRE ATT&CK framework can be challenging…

cs.CR2022

HeATed Alert Triage (HeAT): Transferrable Learning to Extract Multistage Attack Campaigns

Stephen Moskal, Shanchieh Jay Yang

With growing sophistication and volume of cyber attacks combined with complex network structures, it is becoming extremely difficult for security analysts to corroborate evidences…