4 papers
LLM-Based Identification of Infostealer Infection Vectors from Screenshots: The Case of Aurora
Estelle Ruellan, Eric Clay, Nicholas Ascoli
Infostealers exfiltrate credentials, session cookies, and sensitive data from infected systems. With over 29 million stealer logs reported in 2024, manual analysis and mitigation a…
Identifying Key Expert Actors in Cybercrime Forums Based on their Technical Expertise
Estelle Ruellan, Francois Labreche, Masarah Paquet-Clouston
The advent of Big Data has made the collection and analysis of cyber threat intelligence challenging due to its volume, leading research to focus on identifying key threat actors;…
Conti Inc.: Understanding the Internal Discussions of a large Ransomware-as-a-Service Operator with Machine Learning
Estelle Ruellan, Masarah Paquet-Clouston, Sebastian Garcia
Ransomware-as-a-service (RaaS) is increasing the scale and complexity of ransomware attacks. Understanding the internal operations behind RaaS has been a challenge due to the illeg…
The Use of Large Language Models (LLM) for Cyber Threat Intelligence (CTI) in Cybercrime Forums
Vanessa Clairoux-Trepanier, Isa-May Beauchamp, Estelle Ruellan +3
Large language models (LLMs) can be used to analyze cyber threat intelligence (CTI) data from cybercrime forums, which contain extensive information and key discussions about emerg…