{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:3R7TCUP3GCXHCUI2FK2Z2AZ5VM","short_pith_number":"pith:3R7TCUP3","schema_version":"1.0","canonical_sha256":"dc7f3151fb30ae71511a2ab59d033dab3cb943f6426bce1a7591f0bc3ba50b55","source":{"kind":"arxiv","id":"2409.05045","version":3},"attestation_state":"computed","paper":{"title":"Using Large Language Models for Template Detection from Security Event Logs","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Hayretdin Bahsi, Risto Vaarandi","submitted_at":"2024-09-08T10:06:54Z","abstract_excerpt":"In modern IT systems and computer networks, real-time and offline event log analysis is a crucial part of cyber security monitoring. In particular, event log analysis techniques are essential for the timely detection of cyber attacks and for assisting security experts with the analysis of past security incidents. The detection of line patterns or templates from unstructured textual event logs has been identified as an important task of event log analysis since detected templates represent event types in the event log and prepare the logs for downstream online or offline security monitoring tas"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2409.05045","kind":"arxiv","version":3},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CR","submitted_at":"2024-09-08T10:06:54Z","cross_cats_sorted":[],"title_canon_sha256":"e63f3681e989cbc1b5df5182291b9c28b20d024a6590900dd43ef2da635e1423","abstract_canon_sha256":"cff06c8b083c47252176bda2a6a07dd1ea5598a0967600b1887dfbd951a64c76"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:48:19.091410Z","signature_b64":"sWePo15zx5iMpDGtIMkH+af50PacKkpFtj5Mazx7M+zBynwyTWgJAkRHfd87aYywrrHbJfJ7qUzzzN24u8oeBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"dc7f3151fb30ae71511a2ab59d033dab3cb943f6426bce1a7591f0bc3ba50b55","last_reissued_at":"2026-07-05T10:48:19.090931Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:48:19.090931Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Using Large Language Models for Template Detection from Security Event Logs","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Hayretdin Bahsi, Risto Vaarandi","submitted_at":"2024-09-08T10:06:54Z","abstract_excerpt":"In modern IT systems and computer networks, real-time and offline event log analysis is a crucial part of cyber security monitoring. In particular, event log analysis techniques are essential for the timely detection of cyber attacks and for assisting security experts with the analysis of past security incidents. The detection of line patterns or templates from unstructured textual event logs has been identified as an important task of event log analysis since detected templates represent event types in the event log and prepare the logs for downstream online or offline security monitoring tas"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2409.05045","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2409.05045/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2409.05045","created_at":"2026-07-05T10:48:19.090986+00:00"},{"alias_kind":"arxiv_version","alias_value":"2409.05045v3","created_at":"2026-07-05T10:48:19.090986+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2409.05045","created_at":"2026-07-05T10:48:19.090986+00:00"},{"alias_kind":"pith_short_12","alias_value":"3R7TCUP3GCXH","created_at":"2026-07-05T10:48:19.090986+00:00"},{"alias_kind":"pith_short_16","alias_value":"3R7TCUP3GCXHCUI2","created_at":"2026-07-05T10:48:19.090986+00:00"},{"alias_kind":"pith_short_8","alias_value":"3R7TCUP3","created_at":"2026-07-05T10:48:19.090986+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2502.00677","citing_title":"LLM-based event log analysis techniques: A survey","ref_index":83,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM","json":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM.json","graph_json":"https://pith.science/api/pith-number/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/graph.json","events_json":"https://pith.science/api/pith-number/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/events.json","paper":"https://pith.science/paper/3R7TCUP3"},"agent_actions":{"view_html":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM","download_json":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM.json","view_paper":"https://pith.science/paper/3R7TCUP3","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2409.05045&json=true","fetch_graph":"https://pith.science/api/pith-number/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/graph.json","fetch_events":"https://pith.science/api/pith-number/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/action/timestamp_anchor","attest_storage":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/action/storage_attestation","attest_author":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/action/author_attestation","sign_citation":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/action/citation_signature","submit_replication":"https://pith.science/pith/3R7TCUP3GCXHCUI2FK2Z2AZ5VM/action/replication_record"}},"created_at":"2026-07-05T10:48:19.090986+00:00","updated_at":"2026-07-05T10:48:19.090986+00:00"}