5 citations · 5 across the 3 of their papers we have counts for
3 papers
cs.CR2025
An Automated Attack Investigation Approach Leveraging Threat-Knowledge-Augmented Large Language Models
Rujie Dai, Peizhuo Lv, Yujiang Gui +7
Advanced Persistent Threats (APTs) are prolonged, stealthy intrusions by skilled adversaries that compromise high-value systems to steal data or disrupt operations. Reconstructing…
cs.SE2024
ASGNet: Adaptive Semantic Gate Networks for Log-Based Anomaly Diagnosis
Haitian Yang, Degang Sun, Wen Liu +3
Logs are widely used in the development and maintenance of software systems. Logs can help engineers understand the runtime behavior of systems and diagnose system failures. For an…
cs.CR2023★ 5 cited
Kairos: Practical Intrusion Detection and Investigation using Whole-system Provenance
Zijun Cheng, Qiujian Lv, Jinyuan Liang +4
Provenance graphs are structured audit logs that describe the history of a system's execution. Recent studies have explored a variety of techniques to analyze provenance graphs for…