Employing LLMs for Incident Response Planning and Review
Fuente:
arXiv
Saved in:
| Main Authors: | Hays, Sam, White, Jules |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Using LLMs for Tabletop Exercises within the Security Domain
by: Hays, Sam, et al.
Published: (2024)
by: Hays, Sam, et al.
Published: (2024)
Reducing Usefulness of Stolen Credentials in SSO Contexts
by: Hays, Sam, et al.
Published: (2024)
by: Hays, Sam, et al.
Published: (2024)
Alignment of Cybersecurity Incident Prioritisation with Incident Response Management Maturity Capabilities
by: Gulay, Abdulaziz, et al.
Published: (2024)
by: Gulay, Abdulaziz, et al.
Published: (2024)
Advancing Autonomous Incident Response: Leveraging LLMs and Cyber Threat Intelligence
by: Tellache, Amine, et al.
Published: (2025)
by: Tellache, Amine, et al.
Published: (2025)
An Attack-Driven Incident Response and Defense System (ADIRDS)
by: Lai, Anthony Cheuk Tung, et al.
Published: (2025)
by: Lai, Anthony Cheuk Tung, et al.
Published: (2025)
IRCopilot: Automated Incident Response with Large Language Models
by: Lin, Xihuan, et al.
Published: (2025)
by: Lin, Xihuan, et al.
Published: (2025)
Incident Response Planning Using a Lightweight Large Language Model with Reduced Hallucination
by: Hammar, Kim, et al.
Published: (2025)
by: Hammar, Kim, et al.
Published: (2025)
Towards Incident Response Orchestration and Automation for the Advanced Metering Infrastructure
by: Lekidis, Alexios, et al.
Published: (2024)
by: Lekidis, Alexios, et al.
Published: (2024)
SOCpilot: Verifying Policy Compliance for LLM-Assisted Incident Response
by: Barbieri, Sidnei, et al.
Published: (2026)
by: Barbieri, Sidnei, et al.
Published: (2026)
Accelerating Incident Response: A Hybrid Approach for Data Breach Reporting
by: Arrus, Aurora, et al.
Published: (2026)
by: Arrus, Aurora, et al.
Published: (2026)
Before You Hand Over the Wheel: Evaluating LLMs for Security Incident Analysis
by: Jajodia, Sourov, et al.
Published: (2026)
by: Jajodia, Sourov, et al.
Published: (2026)
Ransomware IR Model: Proactive Threat Intelligence-Based Incident Response Strategy
by: Lai, Anthony Cheuk Tung, et al.
Published: (2025)
by: Lai, Anthony Cheuk Tung, et al.
Published: (2025)
Retrieval-Augmented LLMs for Security Incident Analysis
by: Cadet, Xavier, et al.
Published: (2026)
by: Cadet, Xavier, et al.
Published: (2026)
Observability and Incident Response in Managed Serverless Environments Using Ontology-Based Log Monitoring
by: Ben-Shimol, Lavi, et al.
Published: (2024)
by: Ben-Shimol, Lavi, et al.
Published: (2024)
Towards a Comprehensive Framework for Cyber-Incident Response Decision Support in Smart Grids
by: Sen, Omer, et al.
Published: (2024)
by: Sen, Omer, et al.
Published: (2024)
After the Breach: Incident Response within Enterprises
by: Rao, Sumanth
Published: (2024)
by: Rao, Sumanth
Published: (2024)
Consistent and Compatible Modelling of Cyber Intrusions and Incident Response Demonstrated in the Context of Malware Attacks on Critical Infrastructure
by: Maynard, Peter, et al.
Published: (2025)
by: Maynard, Peter, et al.
Published: (2025)
Multi-Agent Collaboration in Incident Response with Large Language Models
by: Liu, Zefang
Published: (2024)
by: Liu, Zefang
Published: (2024)
PHOENI2X -- A European Cyber Resilience Framework With Artificial-Intelligence-Assisted Orchestration, Automation and Response Capabilities for Business Continuity and Recovery, Incident Response, and Information Exchange
by: Fysarakis, Konstantinos, et al.
Published: (2023)
by: Fysarakis, Konstantinos, et al.
Published: (2023)
Chances and Challenges of the Model Context Protocol in Digital Forensics and Incident Response
by: Hilgert, Jan-Niclas, et al.
Published: (2025)
by: Hilgert, Jan-Niclas, et al.
Published: (2025)
Towards Flexible Anonymous Networks
by: Rochet, Florentin, et al.
Published: (2022)
by: Rochet, Florentin, et al.
Published: (2022)
Transportation Cyber Incident Awareness through Generative AI-Based Incident Analysis and Retrieval-Augmented Question-Answering Systems
by: Thomas, Ostonya, et al.
Published: (2025)
by: Thomas, Ostonya, et al.
Published: (2025)
Private Means and the Curious Incident of the Free Lunch
by: Fitzsimons, Jack, et al.
Published: (2024)
by: Fitzsimons, Jack, et al.
Published: (2024)
An End-to-End GSM/SMS Encrypted Approach for Smartphone Employing Advanced Encryption Standard(AES)
by: Abbas, Wasim, et al.
Published: (2025)
by: Abbas, Wasim, et al.
Published: (2025)
Design for Assurance: Employing Functional Verification Tools for Thwarting Hardware Trojan Threat in 3PIPs
by: Hu, Wei, et al.
Published: (2023)
by: Hu, Wei, et al.
Published: (2023)
LLM Agents Should Employ Security Principles
by: Zhang, Kaiyuan, et al.
Published: (2025)
by: Zhang, Kaiyuan, et al.
Published: (2025)
Is the Digital Forensics and Incident Response Pipeline Ready for Text-Based Threats in LLM Era?
by: Bhandarkar, Avanti, et al.
Published: (2024)
by: Bhandarkar, Avanti, et al.
Published: (2024)
FIST: A Structured Threat Modeling Framework for Fraud Incidents
by: Dai, Yu-Chen, et al.
Published: (2025)
by: Dai, Yu-Chen, et al.
Published: (2025)
Structural Generalization in Autonomous Cyber Incident Response with Message-Passing Neural Networks and Reinforcement Learning
by: Nyberg, Jakob, et al.
Published: (2024)
by: Nyberg, Jakob, et al.
Published: (2024)
AutoBnB-RAG: Enhancing Multi-Agent Incident Response with Retrieval-Augmented Generation
by: Liu, Zefang, et al.
Published: (2025)
by: Liu, Zefang, et al.
Published: (2025)
In-Context Autonomous Network Incident Response: An End-to-End Large Language Model Agent Approach
by: Gao, Yiran, et al.
Published: (2026)
by: Gao, Yiran, et al.
Published: (2026)
Enterprise Security Incident Analysis and Countermeasures Based on the T-Mobile Data Breach
by: Cui, Zhuohan, et al.
Published: (2025)
by: Cui, Zhuohan, et al.
Published: (2025)
Exploring LLMs for Malware Detection: Review, Framework Design, and Countermeasure Approaches
by: Al-Karaki, Jamal, et al.
Published: (2024)
by: Al-Karaki, Jamal, et al.
Published: (2024)
DFIR-Metric: A Benchmark Dataset for Evaluating Large Language Models in Digital Forensics and Incident Response
by: Cherif, Bilel, et al.
Published: (2025)
by: Cherif, Bilel, et al.
Published: (2025)
Everyone Needs AIR: An Agnostic Incident Reporting Framework for Cybersecurity in Operational Technology
by: Vidal, Nubio, et al.
Published: (2025)
by: Vidal, Nubio, et al.
Published: (2025)
Few-Shot Learning-Based Cyber Incident Detection with Augmented Context Intelligence
by: Zuo, Fei, et al.
Published: (2025)
by: Zuo, Fei, et al.
Published: (2025)
Online Incident Response Planning under Model Misspecification through Bayesian Learning and Belief Quantization
by: Hammar, Kim, et al.
Published: (2025)
by: Hammar, Kim, et al.
Published: (2025)
Bayesian and Multi-Objective Decision Support for Real-Time Incident Mitigation in Critical Infrastructure
by: Huang, Shaofei, et al.
Published: (2025)
by: Huang, Shaofei, et al.
Published: (2025)
A Review of Cybersecurity Incidents in the Food and Agriculture Sector
by: Kulkarni, Ajay, et al.
Published: (2024)
by: Kulkarni, Ajay, et al.
Published: (2024)
A Formal Model of Security Controls' Capabilities and Its Applications to Policy Refinement and Incident Management
by: Basile, Cataldo, et al.
Published: (2024)
by: Basile, Cataldo, et al.
Published: (2024)
Similar Items
-
Using LLMs for Tabletop Exercises within the Security Domain
by: Hays, Sam, et al.
Published: (2024) -
Reducing Usefulness of Stolen Credentials in SSO Contexts
by: Hays, Sam, et al.
Published: (2024) -
Alignment of Cybersecurity Incident Prioritisation with Incident Response Management Maturity Capabilities
by: Gulay, Abdulaziz, et al.
Published: (2024) -
Advancing Autonomous Incident Response: Leveraging LLMs and Cyber Threat Intelligence
by: Tellache, Amine, et al.
Published: (2025) -
An Attack-Driven Incident Response and Defense System (ADIRDS)
by: Lai, Anthony Cheuk Tung, et al.
Published: (2025)