3 papers
cs.SE2025
Automatically Generating Rules of Malicious Software Packages via Large Language Model
XiangRui Zhang, HaoYu Chen, Yongzhong He +2
Today's security tools predominantly rely on predefined rules crafted by experts, making them poorly adapted to the emergence of software supply chain attacks. To tackle this limit…
cs.CR2024
Tactics, Techniques, and Procedures (TTPs) in Interpreted Malware: A Zero-Shot Generation with Large Language Models
Ying Zhang, Xiaoyan Zhou, Hui Wen +4
Nowadays, the open-source software (OSS) ecosystem suffers from security threats of software supply chain (SSC) attacks. Interpreted OSS malware plays a vital role in SSC attacks,…
cs.CR2024
Obfuscating IoT Device Scanning Activity via Adversarial Example Generation
Haocong Li, Yaxin Zhang, Long Cheng +3
Nowadays, attackers target Internet of Things (IoT) devices for security exploitation, and search engines for devices and services compromise user privacy, including IP addresses,…