Winemaking: Extracting Essential Insights for Efficient Threat Detection in Audit Logs
Fuente:
arXiv
Saved in:
| Main Authors: | Wu, Weiheng, Qiao, Wei, Yan, Wenhao, Jiang, Bo, Liu, Yuling, Liu, Baoxu, Lu, Zhigang, Liu, JunRong |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Sentient: Detecting APTs Via Capturing Indirect Dependencies and Behavioral Logic
by: Yan, Wenhao, et al.
Published: (2025)
by: Yan, Wenhao, et al.
Published: (2025)
ProvAgent: Threat Detection Based on Identity-Behavior Binding and Multi-Agent Collaborative Attack Investigation
by: Yan, Wenhao, et al.
Published: (2026)
by: Yan, Wenhao, et al.
Published: (2026)
FG-SAT: Efficient Flow Graph for Encrypted Traffic Classification under Environment Shifts
by: Cui, Susu, et al.
Published: (2024)
by: Cui, Susu, et al.
Published: (2024)
Audit-LLM: Multi-Agent Collaboration for Log-based Insider Threat Detection
by: Song, Chengyu, et al.
Published: (2024)
by: Song, Chengyu, et al.
Published: (2024)
CLIProv: A Contrastive Log-to-Intelligence Multimodal Approach for Threat Detection and Provenance Analysis
by: Li, Jingwen, et al.
Published: (2025)
by: Li, Jingwen, et al.
Published: (2025)
SmartGuard: Leveraging Large Language Models for Network Attack Detection through Audit Log Analysis and Summarization
by: Zhang, Hao, et al.
Published: (2025)
by: Zhang, Hao, et al.
Published: (2025)
From Context to Rules: Toward Unified Detection Rule Generation
by: Meng, Cheng, et al.
Published: (2026)
by: Meng, Cheng, et al.
Published: (2026)
Towards Secure Retrieval-Augmented Generation: A Comprehensive Review of Threats, Defenses and Benchmarks
by: Mu, Yanming, et al.
Published: (2026)
by: Mu, Yanming, et al.
Published: (2026)
Memory-Augmented Log Analysis with Phi-4-mini: Enhancing Threat Detection in Structured Security Logs
by: Guo, Anbi, et al.
Published: (2025)
by: Guo, Anbi, et al.
Published: (2025)
ProvX: Generating Counterfactual-Driven Attack Explanations for Provenance-Based Detection
by: Wu, Weiheng, et al.
Published: (2025)
by: Wu, Weiheng, et al.
Published: (2025)
Sharpening Kubernetes Audit Logs with Context Awareness
by: Franzil, Matteo, et al.
Published: (2025)
by: Franzil, Matteo, et al.
Published: (2025)
Log2Sig: Frequency-Aware Insider Threat Detection via Multivariate Behavioral Signal Decomposition
by: Kong, Kaichuan, et al.
Published: (2025)
by: Kong, Kaichuan, et al.
Published: (2025)
SAGA: Synthetic Audit Log Generation for APT Campaigns
by: Huang, Yi-Ting, et al.
Published: (2024)
by: Huang, Yi-Ting, et al.
Published: (2024)
Evaluating Language Models For Threat Detection in IoT Security Logs
by: Tejero-Fernández, Jorge J., et al.
Published: (2025)
by: Tejero-Fernández, Jorge J., et al.
Published: (2025)
Log2graphs: An Unsupervised Framework for Log Anomaly Detection with Efficient Feature Extraction
by: Wang, Caihong, et al.
Published: (2024)
by: Wang, Caihong, et al.
Published: (2024)
LTRDetector: Exploring Long-Term Relationship for Advanced Persistent Threats Detection
by: Liu, Xiaoxiao, et al.
Published: (2024)
by: Liu, Xiaoxiao, et al.
Published: (2024)
MDHP-Net: Detecting an Emerging Time-exciting Threat in IVN
by: Liu, Qi, et al.
Published: (2025)
by: Liu, Qi, et al.
Published: (2025)
ORCHID: Streaming Threat Detection over Versioned Provenance Graphs
by: Goyal, Akul, et al.
Published: (2024)
by: Goyal, Akul, et al.
Published: (2024)
Modern DDoS Threats and Countermeasures: Insights into Emerging Attacks and Detection Strategies
by: Wang, Jincheng, et al.
Published: (2025)
by: Wang, Jincheng, et al.
Published: (2025)
Blockchain-Envisioned Post-Quantum Secure Sanitizable Signature for Audit Logs Management
by: Srivastava, Vikas, et al.
Published: (2023)
by: Srivastava, Vikas, et al.
Published: (2023)
Accurate and Scalable Detection and Investigation of Cyber Persistence Threats
by: Liu, Qi, et al.
Published: (2024)
by: Liu, Qi, et al.
Published: (2024)
UniAud: A Unified Auditing Framework for High Auditing Power and Utility with One Training Run
by: Liu, Ruixuan, et al.
Published: (2025)
by: Liu, Ruixuan, et al.
Published: (2025)
Insight-LLM: LLM-enhanced Multi-view Fusion in Insider Threat Detection
by: Song, Chengyu, et al.
Published: (2025)
by: Song, Chengyu, et al.
Published: (2025)
SnapAudit: Active Auditing of Differentially Private In-Context Learning via Snapshot-Based Simulation
by: Xia, Yuyang, et al.
Published: (2025)
by: Xia, Yuyang, et al.
Published: (2025)
Rethinking Tamper-Evident Logging: A High-Performance, Co-Designed Auditing System
by: Zhao, Rui, et al.
Published: (2025)
by: Zhao, Rui, et al.
Published: (2025)
MambaITD: An Efficient Cross-Modal Mamba Network for Insider Threat Detection
by: Kong, Kaichuan, et al.
Published: (2025)
by: Kong, Kaichuan, et al.
Published: (2025)
Phantom Events: Demystifying the Issues of Log Forgery in Blockchain
by: Liu, Yixuan, et al.
Published: (2025)
by: Liu, Yixuan, et al.
Published: (2025)
Committed SAE-Feature Traces for Audited-Session Substitution Detection in Hosted LLMs
by: Liu, Ziyang
Published: (2026)
by: Liu, Ziyang
Published: (2026)
Language of Network: A Generative Pre-trained Model for Encrypted Traffic Comprehension
by: Zhao, Di, et al.
Published: (2025)
by: Zhao, Di, et al.
Published: (2025)
Security Logs to ATT&CK Insights: Leveraging LLMs for High-Level Threat Understanding and Cognitive Trait Inference
by: Hans, Soham, et al.
Published: (2025)
by: Hans, Soham, et al.
Published: (2025)
Graph Neural Network Based Adaptive Threat Detection for Cloud Identity and Access Management Logs
by: Madireddy, Venkata Tanuja
Published: (2025)
by: Madireddy, Venkata Tanuja
Published: (2025)
Semantic-Aware Advanced Persistent Threat Detection Using Autoencoders on LLM-Encoded System Logs
by: Mohammed, Waleed Khan, et al.
Published: (2026)
by: Mohammed, Waleed Khan, et al.
Published: (2026)
Benchmarking LLMs in an Embodied Environment for Blue Team Threat Hunting
by: Liu, Xiaoqun, et al.
Published: (2025)
by: Liu, Xiaoqun, et al.
Published: (2025)
Capturing Monetarily Exploitable Vulnerability in Smart Contracts via Auditor Knowledge-Learning Fuzzing
by: Cai, Bowen, et al.
Published: (2026)
by: Cai, Bowen, et al.
Published: (2026)
DMFI: A Dual-Modality Log Analysis Framework for Insider Threat Detection with LoRA-Tuned Language Models
by: Kong, Kaichuan, et al.
Published: (2025)
by: Kong, Kaichuan, et al.
Published: (2025)
ThreatPilot: Attack-Driven Threat Intelligence Extraction
by: Xu, Ming, et al.
Published: (2024)
by: Xu, Ming, et al.
Published: (2024)
Deep Learning-based Anomaly Detection and Log Analysis for Computer Networks
by: Wang, Shuzhan, et al.
Published: (2024)
by: Wang, Shuzhan, et al.
Published: (2024)
OCR-APT: Reconstructing APT Stories from Audit Logs using Subgraph Anomaly Detection and LLMs
by: Aly, Ahmed, et al.
Published: (2025)
by: Aly, Ahmed, et al.
Published: (2025)
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
by: Guo, Yinggang, et al.
Published: (2024)
by: Guo, Yinggang, et al.
Published: (2024)
Unique Security and Privacy Threats of Large Language Models: A Comprehensive Survey
by: Wang, Shang, et al.
Published: (2024)
by: Wang, Shang, et al.
Published: (2024)
Similar Items
-
Sentient: Detecting APTs Via Capturing Indirect Dependencies and Behavioral Logic
by: Yan, Wenhao, et al.
Published: (2025) -
ProvAgent: Threat Detection Based on Identity-Behavior Binding and Multi-Agent Collaborative Attack Investigation
by: Yan, Wenhao, et al.
Published: (2026) -
FG-SAT: Efficient Flow Graph for Encrypted Traffic Classification under Environment Shifts
by: Cui, Susu, et al.
Published: (2024) -
Audit-LLM: Multi-Agent Collaboration for Log-based Insider Threat Detection
by: Song, Chengyu, et al.
Published: (2024) -
CLIProv: A Contrastive Log-to-Intelligence Multimodal Approach for Threat Detection and Provenance Analysis
by: Li, Jingwen, et al.
Published: (2025)