A user study with 10 security experts reveals that while large LLMs (≥70B) generate syntactically valid NIDS rules, experts deem only 37.5% deployable due to low specificity and logic hallucinations, viewing LLMs as support tools rather than autonomous rule generators.
Large language models hallucination: A comprehensive survey.Computer Science Review, 61:100970, 2026
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2026 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
Beyond the Syntax: Do Security Experts Trust LLMs for NIDS Rule Engineering?
A user study with 10 security experts reveals that while large LLMs (≥70B) generate syntactically valid NIDS rules, experts deem only 37.5% deployable due to low specificity and logic hallucinations, viewing LLMs as support tools rather than autonomous rule generators.