3 papers
cs.CR2026
NetSecBed: A Container-Native Testbed for Reproducible Cybersecurity Experimentation
Leonardo Bitzki, Diego Kreutz, Tiago Heinrich +4
Cybersecurity research increasingly depends on reproducible evidence, such as traffic traces, logs, and labeled datasets, yet most public datasets remain static and offer limited s…
cs.DC2025
Temperature in SLMs: Impact on Incident Categorization in On-Premises Environments
Marcio Pohlmann, Alex Severo, Gefté Almeida +3
SOCs and CSIRTs face increasing pressure to automate incident categorization, yet the use of cloud-based LLMs introduces costs, latency, and confidentiality risks. We investigate w…
cs.CR2025
On-Premise SLMs vs. Commercial LLMs: Prompt Engineering and Incident Classification in SOCs and CSIRTs
Gefté Almeida, Marcio Pohlmann, Alex Severo +3
In this study, we evaluate open-source models for security incident classification, comparing them with proprietary models. We utilize a dataset of anonymized real incidents, categ…