10 papers · 1 filter
Just Testing, Move Along: Evasion of LLM-based System Log Interpretation by Prompt Injection
Max Landauer, Florian Skopik, Markus Wurzenberger +2
Large Language Models (LLMs) are increasingly integrated into Security Operations Center (SOC) workflows, where they support analysts in tasks such as the interpretation of system…
CAM-LDS: Cyber Attack Manifestations for Automatic Interpretation of System Logs and Security Alerts
Max Landauer, Wolfgang Hotwagner, Thorina Boenke +2
Log data are essential for intrusion detection and forensic investigations. However, manual log analysis is tedious due to high data volumes, heterogeneous event formats, and unstr…
Resource-Aware Deployment Optimization for Collaborative Intrusion Detection in Layered Networks
André García Gómez, Ines Rieger, Wolfgang Hotwagner +4
Collaborative Intrusion Detection Systems (CIDS) are increasingly adopted to counter cyberattacks, as their collaborative nature enables them to adapt to diverse scenarios across h…
AlertBERT: A noise-robust alert grouping framework for simultaneous cyber attacks
Lukas Karner, Max Landauer, Markus Wurzenberger +1
Automated detection of cyber attacks is a critical capability to counteract the growing volume and sophistication of cyber attacks. However, the high numbers of security alerts iss…
AttackMate: Realistic Emulation and Automation of Cyber Attack Scenarios Across the Kill Chain
Max Landauer, Wolfgang Hotwagner, Thorina Boenke +2
Adversary emulation tools facilitate scripting and automated execution of cyber attack chains, thereby reducing costs and manual expert effort required for security testing, cyber…
StealthCup: Realistic, Multi-Stage, Evasion-Focused CTF for Benchmarking IDS
Manuel Kern, Dominik Steffan, Felix Schuster +5
Intrusion Detection Systems (IDS) are critical to defending enterprise and industrial control environments, yet evaluating their effectiveness under realistic conditions remains an…