IOCRegex-gen automates IOC-to-regex conversion with LLMs via group-aware grouping and multi-stage validation, reporting 99.1% hit rate and 0.8% false-positive rate on 3000+ CTI reports and 2400 ground-truth strings.
Microsoft security incident prediction
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2026 1verdicts
UNVERDICTED 1representative citing papers
citing papers explorer
-
From IOCs to Regex: Automating CTI Operationalization for SOC with LLMs
IOCRegex-gen automates IOC-to-regex conversion with LLMs via group-aware grouping and multi-stage validation, reporting 99.1% hit rate and 0.8% false-positive rate on 3000+ CTI reports and 2400 ground-truth strings.