ExCyTIn-Bench is the first benchmark of 7542 questions from Microsoft Sentinel threat investigation graphs, where the best LLM agent achieves a reward of 0.606.
When llms meet cybersecurity: A systematic literature review
3 Pith papers cite this work, alongside 11 external citations. Polarity classification is still indexing.
citation-role summary
citation-polarity summary
fields
cs.CR 3roles
background 1polarities
background 1representative citing papers
VulLink continuously ETL-integrates public vulnerability repositories into an open, typed graph with API access and pretrained embeddings for cybersecurity data mining.
A framework detects LLM anomalies including hallucinations, jailbreaks, and backdoors by forensic inspection of layer-wise hidden state patterns, reporting over 95% accuracy with minimal computational overhead.
citing papers explorer
-
ExCyTIn-Bench: Evaluating LLM agents on Cyber Threat Investigation
ExCyTIn-Bench is the first benchmark of 7542 questions from Microsoft Sentinel threat investigation graphs, where the best LLM agent achieves a reward of 0.606.
-
VulLink: A Dynamic Open-Access Vulnerability Graph Database for Cybersecurity Data Mining
VulLink continuously ETL-integrates public vulnerability repositories into an open, typed graph with API access and pretrained embeddings for cybersecurity data mining.
-
Exposing the Ghost in the Transformer: Abnormal Detection for Large Language Models via Hidden State Forensics
A framework detects LLM anomalies including hallucinations, jailbreaks, and backdoors by forensic inspection of layer-wise hidden state patterns, reporting over 95% accuracy with minimal computational overhead.