2 papers
cs.CR2025
ProvX: Generating Counterfactual-Driven Attack Explanations for Provenance-Based Detection
Weiheng Wu, Wei Qiao, Teng Li +4
Provenance graph-based intrusion detection systems are deployed on hosts to defend against increasingly severe Advanced Persistent Threat. Using Graph Neural Networks to detect the…
cs.CR2025
Slot: Provenance-Driven APT Detection through Graph Reinforcement Learning
Wei Qiao, Yebo Feng, Teng Li +4
Advanced Persistent Threats (APTs) represent sophisticated cyberattacks characterized by their ability to remain undetected within the victim system for extended periods, aiming to…