3 papers
cs.NI2026
The Potential of Erroneous Outbound Traffic Analysis to Unveil Silent Internal Anomalies
Andrea Sordello, Zhihao Wang, Kai Huang +2
Passive measurement has traditionally focused on inbound traffic to detect malicious activity, based on the assumption that threats originate externally. In this paper, we offer a…
cs.CR2025
CyberSleuth: Autonomous Blue-Team LLM Agent for Web Attack Forensics
Stefano Fumero, Kai Huang, Matteo Boffa +3
Post-mortem analysis of compromised systems is a key aspect of cyber forensics, today a mostly manual, slow, and error-prone task. Agentic AI, i.e., LLM-powered agents, is a promis…
cs.NI2024
Dynamic Cluster Analysis to Detect and Track Novelty in Network Telescopes
Kai Huang, Luca Gioacchini, Marco Mellia +1
In the context of cybersecurity, tracking the activities of coordinated hosts over time is a daunting task because both participants and their behaviours evolve at a fast pace. We…