Saved in:
Bibliographic Details
Main Authors: Tseng, PeiYu, Yeh, ZihDwo, Dai, Xushu, Liu, Peng
Format: Preprint
Published: 2024
Subjects:
Online Access:https://arxiv.org/abs/2407.13093
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866914876241215488
author Tseng, PeiYu
Yeh, ZihDwo
Dai, Xushu
Liu, Peng
author_facet Tseng, PeiYu
Yeh, ZihDwo
Dai, Xushu
Liu, Peng
contents SIEM systems are prevalent and play a critical role in a variety of analyst workflows in Security Operation Centers. However, modern SIEMs face a big challenge: they still cannot relieve analysts from the repetitive tasks involved in analyzing CTI (Cyber Threat Intelligence) reports written in natural languages. This project aims to develop an AI agent to replace the labor intensive repetitive tasks involved in analyzing CTI reports. The agent exploits the revolutionary capabilities of LLMs (e.g., GPT-4), but it does not require any human intervention.
format Preprint
id arxiv_https___arxiv_org_abs_2407_13093
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Using LLMs to Automate Threat Intelligence Analysis Workflows in Security Operation Centers
Tseng, PeiYu
Yeh, ZihDwo
Dai, Xushu
Liu, Peng
Cryptography and Security
SIEM systems are prevalent and play a critical role in a variety of analyst workflows in Security Operation Centers. However, modern SIEMs face a big challenge: they still cannot relieve analysts from the repetitive tasks involved in analyzing CTI (Cyber Threat Intelligence) reports written in natural languages. This project aims to develop an AI agent to replace the labor intensive repetitive tasks involved in analyzing CTI reports. The agent exploits the revolutionary capabilities of LLMs (e.g., GPT-4), but it does not require any human intervention.
title Using LLMs to Automate Threat Intelligence Analysis Workflows in Security Operation Centers
topic Cryptography and Security
url https://arxiv.org/abs/2407.13093