A Graph-Based Approach to Alert Contextualisation in Security Operations Centres
Fuente:
arXiv
Saved in:
| Main Authors: | Eckhoff, Magnus Wiik, Flydal, Peter Marius, Peters, Siem, Eian, Martin, Halvorsen, Jonas, Mavroeidis, Vasileios, Grov, Gudmund |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
On the use of neurosymbolic AI for defending against cyber attacks
by: Grov, Gudmund, et al.
Published: (2024)
by: Grov, Gudmund, et al.
Published: (2024)
Towards Agentic Investigation of Security Alerts
by: Eilertsen, Even, et al.
Published: (2026)
by: Eilertsen, Even, et al.
Published: (2026)
LLM-Powered Intent-Based Categorization of Phishing Emails
by: Eilertsen, Even, et al.
Published: (2025)
by: Eilertsen, Even, et al.
Published: (2025)
Detecting and Eliminating Neural Network Backdoors Through Active Paths with Application to Intrusion Detection
by: Høyheim, Eirik, et al.
Published: (2026)
by: Høyheim, Eirik, et al.
Published: (2026)
Towards Incident Response Orchestration and Automation for the Advanced Metering Infrastructure
by: Lekidis, Alexios, et al.
Published: (2024)
by: Lekidis, Alexios, et al.
Published: (2024)
Exploring reinforcement learning for incident response in autonomous military vehicles
by: Madsen, Henrik, et al.
Published: (2024)
by: Madsen, Henrik, et al.
Published: (2024)
Operationalizing Cybersecurity Knowledge: Design, Implementation & Evaluation of a Knowledge Management System for CACAO Playbooks
by: Tsirakis, Orestis, et al.
Published: (2025)
by: Tsirakis, Orestis, et al.
Published: (2025)
Leaking LoRa: An Evaluation of Password Leaks and Knowledge Storage in Large Language Models
by: Marinelli, Ryan, et al.
Published: (2025)
by: Marinelli, Ryan, et al.
Published: (2025)
TIPS: Threat Sharing Information Platform for Enhanced Security
by: Pasumarthy, Lakshmi Rama Kiran, et al.
Published: (2024)
by: Pasumarthy, Lakshmi Rama Kiran, et al.
Published: (2024)
LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations Centres
by: Singh, Ronal, et al.
Published: (2025)
by: Singh, Ronal, et al.
Published: (2025)
AI-Driven Security Alert Screening and Alert Fatigue Mitigation in Security Operations Centers: A Survey
by: Ndichu, Samuel, et al.
Published: (2026)
by: Ndichu, Samuel, et al.
Published: (2026)
Forecasting Attacker Actions using Alert-driven Attack Graphs
by: Băbălău, Ion, et al.
Published: (2024)
by: Băbălău, Ion, et al.
Published: (2024)
AlertStar: Path-Aware Alert Prediction on Hyper-Relational Knowledge Graphs
by: Nayeri, Zahra Makki, et al.
Published: (2026)
by: Nayeri, Zahra Makki, et al.
Published: (2026)
ContextBuddy: AI-Enhanced Contextual Insights for Security Alert Investigation (Applied to Intrusion Detection)
by: Singh, Ronal, et al.
Published: (2025)
by: Singh, Ronal, et al.
Published: (2025)
"What Keeps People Secure is That They Met The Security Team": Deconstructing Drivers And Goals of Organizational Security Awareness
by: Hielscher, Jonas, et al.
Published: (2024)
by: Hielscher, Jonas, et al.
Published: (2024)
Information-Dense Reasoning for Efficient and Auditable Security Alert Triage
by: Zhao, Guangze, et al.
Published: (2025)
by: Zhao, Guangze, et al.
Published: (2025)
From Conceptual Scaffold to Prototype: A Standardized Zonal Architecture for Wi-Fi Security Training
by: Kampourakis, Vyron, et al.
Published: (2026)
by: Kampourakis, Vyron, et al.
Published: (2026)
Considerations for Cloud Security Operations
by: Cusick, James
Published: (2016)
by: Cusick, James
Published: (2016)
Resilient Alerting Protocols for Blockchains
by: Mouallem, Marwa, et al.
Published: (2026)
by: Mouallem, Marwa, et al.
Published: (2026)
Silenzio: Secure Non-Interactive Outsourced MLP Training
by: Sander, Jonas, et al.
Published: (2025)
by: Sander, Jonas, et al.
Published: (2025)
Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting
by: Kirchner, Robin, et al.
Published: (2025)
by: Kirchner, Robin, et al.
Published: (2025)
CAM-LDS: Cyber Attack Manifestations for Automatic Interpretation of System Logs and Security Alerts
by: Landauer, Max, et al.
Published: (2026)
by: Landauer, Max, et al.
Published: (2026)
Secure Group Key Agreement on Cyber-Physical System Buses
by: Peters, Sebastian N., et al.
Published: (2026)
by: Peters, Sebastian N., et al.
Published: (2026)
Toward Securing AI Agents Like Operating Systems
by: Pirch, Lukas, et al.
Published: (2026)
by: Pirch, Lukas, et al.
Published: (2026)
AutoCRAT: Automatic Cumulative Reconstruction of Alert Trees
by: Ficke, Eric, et al.
Published: (2024)
by: Ficke, Eric, et al.
Published: (2024)
ShadowBinding: Realizing Effective Microarchitectures for In-Core Secure Speculation Schemes
by: Kvalsvik, Amund Bergland, et al.
Published: (2025)
by: Kvalsvik, Amund Bergland, et al.
Published: (2025)
ISSF: The Intelligent Security Service Framework for Cloud-Native Operation
by: Yan, Yikuan, et al.
Published: (2024)
by: Yan, Yikuan, et al.
Published: (2024)
Enhancing O-RAN Security: Evasion Attacks and Robust Defenses for Graph Reinforcement Learning-based Connection Management
by: Balakrishnan, Ravikumar, et al.
Published: (2024)
by: Balakrishnan, Ravikumar, et al.
Published: (2024)
Predicting Tail-Risk Escalation in IDS Alert Time Series
by: Gurjar, Ambarish, et al.
Published: (2026)
by: Gurjar, Ambarish, et al.
Published: (2026)
ReDASH: Fast and efficient Scaling in Arithmetic Garbled Circuits for Secure Outsourced Inference
by: Maurer, Felix, et al.
Published: (2025)
by: Maurer, Felix, et al.
Published: (2025)
Operational Runtime Behavior Mining for Open-Source Supply Chain Security
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
Evaluating Organization Security: User Stories of European Union NIS2 Directive
by: Seeba, Mari, et al.
Published: (2025)
by: Seeba, Mari, et al.
Published: (2025)
Enhancing Security Awareness Through Gamified Approaches
by: Ahmed, Yussuf, et al.
Published: (2024)
by: Ahmed, Yussuf, et al.
Published: (2024)
Using LLMs to Automate Threat Intelligence Analysis Workflows in Security Operation Centers
by: Tseng, PeiYu, et al.
Published: (2024)
by: Tseng, PeiYu, et al.
Published: (2024)
Multi-Domain Security for 6G ISAC: Challenges and Opportunities in Transportation
by: Keskin, Musa Furkan, et al.
Published: (2025)
by: Keskin, Musa Furkan, et al.
Published: (2025)
AgriSentinel: Privacy-Enhanced Embedded-LLM Crop Disease Alerting System
by: Mylay, Chanti Raju, et al.
Published: (2025)
by: Mylay, Chanti Raju, et al.
Published: (2025)
Introducing a New Alert Data Set for Multi-Step Attack Analysis
by: Landauer, Max, et al.
Published: (2023)
by: Landauer, Max, et al.
Published: (2023)
Penetration Testing for System Security: Methods and Practical Approaches
by: Zhang, Wei, et al.
Published: (2025)
by: Zhang, Wei, et al.
Published: (2025)
OpenSOC-AI: Democratizing Security Operations with Parameter Efficient LLM Log Analysis
by: Garware, Chaitanya Vilas, et al.
Published: (2026)
by: Garware, Chaitanya Vilas, et al.
Published: (2026)
Securing Operating Systems Through Fine-grained Kernel Access Limitation for IoT Systems
by: Zhan, Dongyang, et al.
Published: (2025)
by: Zhan, Dongyang, et al.
Published: (2025)
Similar Items
-
On the use of neurosymbolic AI for defending against cyber attacks
by: Grov, Gudmund, et al.
Published: (2024) -
Towards Agentic Investigation of Security Alerts
by: Eilertsen, Even, et al.
Published: (2026) -
LLM-Powered Intent-Based Categorization of Phishing Emails
by: Eilertsen, Even, et al.
Published: (2025) -
Detecting and Eliminating Neural Network Backdoors Through Active Paths with Application to Intrusion Detection
by: Høyheim, Eirik, et al.
Published: (2026) -
Towards Incident Response Orchestration and Automation for the Advanced Metering Infrastructure
by: Lekidis, Alexios, et al.
Published: (2024)