8 papers
RangeFactory: Scalable Construction of Multi-Hop Cyber Ranges
Hanlin Jiang, Puyi Wang, Jiandong Jin +10
Real-world cyberattacks often require sustained progress across multiple hosts and network segments, making multi-hop cyber ranges essential infrastructure for studying and improvi…
STAIR: Effective Incident Response Using an End-to-End Agentic Planning Framework
Hanlin Jiang, Jionghao Huang, Shaofei Li +6
Incident response planning is critical for restoring compromised software systems after cyberattacks. Common practice relies on expert-driven playbooks that encode fixed response p…
No Data? No Problem: Synthesizing Security Graphs for Better Intrusion Detection
Yi Huang, Shaofei Li, Yao Guo +3
Provenance graph analysis plays a vital role in intrusion detection, particularly against Advanced Persistent Threats (APTs), by exposing complex attack patterns. While recent syst…
Connect the Dots: Knowledge Graph-Guided Crawler Attack on Retrieval-Augmented Generation Systems
Mengyu Yao, Ziqi Zhang, Ning Luo +5
Stealing attacks pose a persistent threat to the intellectual property of deployed machine-learning systems. Retrieval-augmented generation (RAG) intensifies this risk by extending…
PromoGuardian: Detecting Promotion Abuse Fraud with Multi-Relation Fused Graph Neural Networks
Shaofei Li, Xiao Han, Ziqi Zhang +6
As e-commerce platforms develop, fraudulent activities are increasingly emerging, posing significant threats to the security and stability of these platforms. Promotion abuse is on…
When MCP Servers Attack: Taxonomy, Feasibility, and Mitigation
Weibo Zhao, Jiahao Liu, Bonan Ruan +2
Model Context Protocol (MCP) servers enable AI applications to connect to external systems in a plug-and-play manner, but their rapid proliferation also introduces severe security…