5 citations · 5 across the 2 of their papers we have counts for
3 papers
cs.CR2025
An Automated Attack Investigation Approach Leveraging Threat-Knowledge-Augmented Large Language Models
Rujie Dai, Peizhuo Lv, Yujiang Gui +7
Advanced Persistent Threats (APTs) are prolonged, stealthy intrusions by skilled adversaries that compromise high-value systems to steal data or disrupt operations. Reconstructing…
cs.CR2024
Mitigating the Impact of Malware Evolution on API Sequence-based Windows Malware Detector
Xingyuan Wei, Ce Li, Qiujian Lv +3
In dynamic Windows malware detection, deep learning models are extensively deployed to analyze API sequences. Methods based on API sequences play a crucial role in malware preventi…
cs.CR2023★ 5 cited
Kairos: Practical Intrusion Detection and Investigation using Whole-system Provenance
Zijun Cheng, Qiujian Lv, Jinyuan Liang +4
Provenance graphs are structured audit logs that describe the history of a system's execution. Recent studies have explored a variety of techniques to analyze provenance graphs for…