1 citations · 1 across the 5 of their papers we have counts for
5 papers · 1 filter
Studying Detection Rule Generation as a Unified Task
Cheng Meng, Wenxin Le, Xinyi Li +4
Security systems use detection rules to identify suspicious activity. Existing studies often investigate rule generation for specific security systems, devoting substantial effort…
ProvAgent: Threat Detection Based on Identity-Behavior Binding and Multi-Agent Collaborative Attack Investigation
Wenhao Yan, Ning An, Linxu Li +6
Advanced Persistent Threats (APTs) pose critical challenges to modern cybersecurity due to their multi-stage and stealthy nature. While provenance-based detection approaches show p…
Sentient: Detecting APTs Via Capturing Indirect Dependencies and Behavioral Logic
Wenhao Yan, Ning An, Wei Qiao +5
Advanced Persistent Threats (APTs) are difficult to detect due to their complexity and stealthiness. To mitigate such attacks, many approaches model entities and their relationship…
Winemaking: Extracting Essential Insights for Efficient Threat Detection in Audit Logs
Weiheng Wu, Wei Qiao, Wenhao Yan +5
Advanced Persistent Threats (APTs) are continuously evolving, leveraging their stealthiness and persistence to put increasing pressure on current provenance-based Intrusion Detecti…
FG-SAT: Efficient Flow Graph for Encrypted Traffic Classification under Environment Shifts
Susu Cui, Xueying Han, Dongqi Han +6
Encrypted traffic classification plays a critical role in network security and management. Currently, mining deep patterns from side-channel contents and plaintext fields through n…