3 papers
cs.CR2026
Beyond the Syntax: Do Security Experts Trust LLMs for NIDS Rule Engineering?
Lorenzo di Filippo, Enkeleda Bardhi, Andrea Agiollo +3
As network threats evolve, manual NIDS rule engineering has become a critical operational bottleneck. While Large Language Models (LLMs) show promise for automating this process, t…
cs.CR2026
SoK: Harmonizing Attack Graphs and Intrusion Detection Systems
Andrea Agiollo, Enkeleda Bardhi, Alessandro Palma +3
Detecting and responding to cyber attacks is increasingly difficult as high-volume, complex network traffic allows threats to remain concealed. While Intrusion Detection Systems (I…
cs.CR2026
ThreatLinker: An NLP-based Methodology to Automatically Estimate CVE Relevance for CAPEC Attack Patterns
Andrea Ciavotta, Alessandro Palma, Simone Lenti +1
Threat analysis is continuously growing in importance due to the always-increasing complexity and frequency of cyber attacks. Analyzing threats demands significant effort from secu…