Can SOC Operators Explain their Decisions while Triaging Alarms? A Real-World Study
Fuente:
arXiv
Guardado en:
| Autores principales: | Moosmann, Jessica, Pekaric, Irdin, Apruzzese, Giovanni |
|---|---|
| Formato: | Preprint |
| Publicado: |
2026
|
| Materias: | |
| Acceso en línea: | |
| Etiquetas: |
Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
|
Ejemplares similares
Department-Specific Security Awareness Campaigns: A Cross-Organizational Study of HR and Accounting
por: Pfister, Matthias, et al.
Publicado: (2025)
por: Pfister, Matthias, et al.
Publicado: (2025)
"bot lane noob" Towards Deployment of NLP-based Toxicity Detectors in Video Games
por: Ave, Jonas, et al.
Publicado: (2026)
por: Ave, Jonas, et al.
Publicado: (2026)
LLMs in Cybersecurity: Friend or Foe in the Human Decision Loop?
por: Pekaric, Irdin, et al.
Publicado: (2025)
por: Pekaric, Irdin, et al.
Publicado: (2025)
Security Barriers to Trustworthy AI-Driven Cyber Threat Intelligence in Finance: Evidence from Practitioners
por: Karaosman, Emir, et al.
Publicado: (2026)
por: Karaosman, Emir, et al.
Publicado: (2026)
How Do Mobile Applications Enhance Security? An Exploratory Analysis of Use Cases and Provided Information
por: Pekaric, Irdin, et al.
Publicado: (2025)
por: Pekaric, Irdin, et al.
Publicado: (2025)
SoK: Reshaping Research on Network Intrusion Detection Systems
por: Apruzzese, Giovanni
Publicado: (2026)
por: Apruzzese, Giovanni
Publicado: (2026)
The Dark Side of the Web: Towards Understanding Various Data Sources in Cyber Threat Intelligence
por: Schröer, Saskia Laura, et al.
Publicado: (2025)
por: Schröer, Saskia Laura, et al.
Publicado: (2025)
Topical Shifts in the Dark Web: A Longitudinal Analysis of Content from the Cybercrime Ecosystem
por: Ricaldi, Roy, et al.
Publicado: (2026)
por: Ricaldi, Roy, et al.
Publicado: (2026)
"We provide our resources in a dedicated repository": Surveying the Transparency of HICSS publications
por: Pekaric, Irdin, et al.
Publicado: (2025)
por: Pekaric, Irdin, et al.
Publicado: (2025)
Decision-Aware Trust Signal Alignment for SOC Alert Triage
por: Chowdhury, Israt Jahan, et al.
Publicado: (2026)
por: Chowdhury, Israt Jahan, et al.
Publicado: (2026)
Bridging Safety and Security in Complex Systems: A Model-Based Approach with SAFT-GT Toolchain
por: Pekaric, Irdin, et al.
Publicado: (2026)
por: Pekaric, Irdin, et al.
Publicado: (2026)
The Ephemeral Threat: Assessing the Security of Algorithmic Trading Systems powered by Deep Learning
por: Rizvani, Advije, et al.
Publicado: (2025)
por: Rizvani, Advije, et al.
Publicado: (2025)
Policy-Guided Threat Hunting: An LLM enabled Framework with Splunk SOC Triage
por: Sahay, Rishikesh, et al.
Publicado: (2026)
por: Sahay, Rishikesh, et al.
Publicado: (2026)
LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations Centres
por: Singh, Ronal, et al.
Publicado: (2025)
por: Singh, Ronal, et al.
Publicado: (2025)
The Impact of Emerging Phishing Threats: Assessing Quishing and LLM-generated Phishing Emails against Organizations
por: Weinz, Marie, et al.
Publicado: (2025)
por: Weinz, Marie, et al.
Publicado: (2025)
Adversarial News and Lost Profits: Manipulating Headlines in LLM-Driven Algorithmic Trading
por: Rizvani, Advije, et al.
Publicado: (2026)
por: Rizvani, Advije, et al.
Publicado: (2026)
It's not Easy: Applying Supervised Machine Learning to Detect Malicious Extensions in the Chrome Web Store
por: Rosenzweig, Ben, et al.
Publicado: (2025)
por: Rosenzweig, Ben, et al.
Publicado: (2025)
"Are Adversarial Phishing Webpages a Threat in Reality?" Understanding the Users' Perception of Adversarial Webpages
por: Yuan, Ying, et al.
Publicado: (2024)
por: Yuan, Ying, et al.
Publicado: (2024)
OpenSOC-AI: Democratizing Security Operations with Parameter Efficient LLM Log Analysis
por: Garware, Chaitanya Vilas, et al.
Publicado: (2026)
por: Garware, Chaitanya Vilas, et al.
Publicado: (2026)
Exploiting AI for Attacks: On the Interplay between Adversarial AI and Offensive AI
por: Schröer, Saskia Laura, et al.
Publicado: (2025)
por: Schröer, Saskia Laura, et al.
Publicado: (2025)
Misleading Large Language Models used (or misused) in Scientific Peer-Reviewing via Hidden Prompt-Injection Attacks
por: Collu, Matteo Gioele, et al.
Publicado: (2025)
por: Collu, Matteo Gioele, et al.
Publicado: (2025)
I can't recognize (yet): Delayed Rendering to Defeat Visual Phishing Detectors
por: Yuan, Ying, et al.
Publicado: (2026)
por: Yuan, Ying, et al.
Publicado: (2026)
"What is the Problem Space?" Defining Host-space Adversarial Perturbations against Network Intrusion Detection Systems
por: Verkerken, Miel, et al.
Publicado: (2026)
por: Verkerken, Miel, et al.
Publicado: (2026)
LITE-SOC: Lightweight Security Operations Center Simulator for Cybersecurity Education
por: Higgins, Martin, et al.
Publicado: (2026)
por: Higgins, Martin, et al.
Publicado: (2026)
From IOCs to Regex: Automating CTI Operationalization for SOC with LLMs
por: Tseng, Pei-Yu, et al.
Publicado: (2026)
por: Tseng, Pei-Yu, et al.
Publicado: (2026)
E-PhishGen: Unlocking Novel Research in Phishing Email Detection
por: Pajola, Luca, et al.
Publicado: (2025)
por: Pajola, Luca, et al.
Publicado: (2025)
Can LLMs be Scammed? A Baseline Measurement Study
por: Sehwag, Udari Madhushani, et al.
Publicado: (2024)
por: Sehwag, Udari Madhushani, et al.
Publicado: (2024)
Hooked: A Real-World Study on QR Code Phishing
por: Geisler, Marvin, et al.
Publicado: (2024)
por: Geisler, Marvin, et al.
Publicado: (2024)
AgentSOC: A Multi-Layer Agentic AI Framework for Security Operations Automation
por: Roy, Joyjit, et al.
Publicado: (2026)
por: Roy, Joyjit, et al.
Publicado: (2026)
ConCap: Practical Network Traffic Generation for (ML- and) Flow-based Intrusion Detection Systems
por: Verkerken, Miel, et al.
Publicado: (2025)
por: Verkerken, Miel, et al.
Publicado: (2025)
Prompting the Priorities: A First Look at Evaluating LLMs for Vulnerability Triage and Prioritization
por: Haddad, Osama Al, et al.
Publicado: (2025)
por: Haddad, Osama Al, et al.
Publicado: (2025)
Hierarchical Multi-Modal Threat Intelligence Fusion Without Aligned Data: A Practical Framework for Real-World Security Operations
por: Doppalapudi, Sisir
Publicado: (2025)
por: Doppalapudi, Sisir
Publicado: (2025)
A First Measurement Study on Authentication Security in Real-World Remote MCP Servers
por: Zhou, Huijun, et al.
Publicado: (2026)
por: Zhou, Huijun, et al.
Publicado: (2026)
Triaging Threats to Specialized Guardrails
por: Mo, Wenjie Jacky, et al.
Publicado: (2026)
por: Mo, Wenjie Jacky, et al.
Publicado: (2026)
"Explain, Don't Just Warn!" -- A Real-Time Framework for Generating Phishing Warnings with Contextual Cues
por: Roy, Sayak Saha, et al.
Publicado: (2025)
por: Roy, Sayak Saha, et al.
Publicado: (2025)
Carbon Filter: Real-time Alert Triage Using Large Scale Clustering and Fast Search
por: Oliver, Jonathan, et al.
Publicado: (2024)
por: Oliver, Jonathan, et al.
Publicado: (2024)
Toward Autonomous SOC Operations: End-to-End LLM Framework for Threat Detection, Query Generation, and Resolution in Security Operations
por: Saju, Md Hasan, et al.
Publicado: (2026)
por: Saju, Md Hasan, et al.
Publicado: (2026)
Exploration on Real World Assets and Tokenization
por: Xia, Ning, et al.
Publicado: (2025)
por: Xia, Ning, et al.
Publicado: (2025)
CSUM: A Novel Mechanism for Updating CubeSat while Preserving Authenticity and Integrity
por: Gangwal, Ankit, et al.
Publicado: (2024)
por: Gangwal, Ankit, et al.
Publicado: (2024)
PROVEX: Enhancing SOC Analyst Trust with Explainable Provenance-Based IDS
por: Dhanuka, Devang, et al.
Publicado: (2025)
por: Dhanuka, Devang, et al.
Publicado: (2025)
Ejemplares similares
-
Department-Specific Security Awareness Campaigns: A Cross-Organizational Study of HR and Accounting
por: Pfister, Matthias, et al.
Publicado: (2025) -
"bot lane noob" Towards Deployment of NLP-based Toxicity Detectors in Video Games
por: Ave, Jonas, et al.
Publicado: (2026) -
LLMs in Cybersecurity: Friend or Foe in the Human Decision Loop?
por: Pekaric, Irdin, et al.
Publicado: (2025) -
Security Barriers to Trustworthy AI-Driven Cyber Threat Intelligence in Finance: Evidence from Practitioners
por: Karaosman, Emir, et al.
Publicado: (2026) -
How Do Mobile Applications Enhance Security? An Exploratory Analysis of Use Cases and Provided Information
por: Pekaric, Irdin, et al.
Publicado: (2025)