6 papers
ARuleCon: Agentic Security Rule Conversion
Ming Xu, Hongtai Wang, Yanpei Guo +5
Security Information and Event Management (SIEM) systems make it possible for detecting intrusion anomalies in real-time manner by their applied security rules. However, the hetero…
ThreatPilot: Attack-Driven Threat Intelligence Extraction
Ming Xu, Hongtai Wang, Jiahao Liu +6
Efficient defense against dynamically evolving advanced persistent threats (APT) requires the structured threat intelligence feeds, such as techniques used. However, existing threa…
RulePilot: An LLM-Powered Agent for Security Rule Generation
Hongtai Wang, Ming Xu, Yanpei Guo +3
The real-time demand for system security leads to the detection rules becoming an integral part of the intrusion detection life-cycle. Rule-based detection often identifies malicio…
KAPG: Adaptive Password Guessing via Knowledge-Augmented Generation
Xudong Yang, Jincheng Li, Kaiwen Xing +4
As the primary mechanism of digital authentication, user-created passwords exhibit common patterns and regularities that can be learned from leaked datasets. Password choices are p…
MoPE: A Mixture of Password Experts for Improving Password Guessing
Mingjian Duan, Ming Xu, Shenghao Zhang +2
Textual passwords remain a predominant authentication mechanism in web security. To evaluate their strength, existing research has proposed several data-driven models across variou…
On the Account Security Risks Posed by Password Strength Meters
Ming Xu, Weili Han, Jitao Yu +4
Password strength meters (PSMs) have been widely used by websites to gauge password strength, encouraging users to create stronger passwords. Popular data-driven PSMs, e.g., based…