3 citations · 3 across the 2 of their papers we have counts for
3 papers
cs.CR2025
OMNISEC: LLM-Driven Provenance-based Intrusion Detection via Retrieval-Augmented Behavior Prompting
Wenrui Cheng, Tiantian Zhu, Shunan Jing +4
Recently, Provenance-based Intrusion Detection Systems (PIDSes) have been widely used for endpoint threat analysis. These studies can be broadly categorized into rule-based detecti…
cs.CR2024
Nip in the Bud: Forecasting and Interpreting Post-exploitation Attacks in Real-time through Cyber Threat Intelligence Reports
Tiantian Zhu, Jie Ying, Tieming Chen +6
Advanced Persistent Threat (APT) attacks have caused significant damage worldwide. Various Endpoint Detection and Response (EDR) systems are deployed by enterprises to fight agains…
cs.CR2024★ 3 cited
SPARSE: Semantic Tracking and Path Analysis for Attack Investigation in Real-time
Jie Ying, Tiantian Zhu, Wenrui Cheng +6
As the complexity and destructiveness of Advanced Persistent Threat (APT) increase, there is a growing tendency to identify a series of actions undertaken to achieve the attacker's…