Pith. sign in

REVIEW 3 cited by

Use of Graph Neural Networks in Aiding Defensive Cyber Operations

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2401.05680 v1 pith:HLSL2T4N submitted 2024-01-11 cs.CR cs.AIcs.LGcs.NE

classification cs.CRcs.AIcs.LGcs.NE
keywords attackcyberdefensivelifeaidingapproachesbreakcyber-attacks
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

In an increasingly interconnected world, where information is the lifeblood of modern society, regular cyber-attacks sabotage the confidentiality, integrity, and availability of digital systems and information. Additionally, cyber-attacks differ depending on the objective and evolve rapidly to disguise defensive systems. However, a typical cyber-attack demonstrates a series of stages from attack initiation to final resolution, called an attack life cycle. These diverse characteristics and the relentless evolution of cyber attacks have led cyber defense to adopt modern approaches like Machine Learning to bolster defensive measures and break the attack life cycle. Among the adopted ML approaches, Graph Neural Networks have emerged as a promising approach for enhancing the effectiveness of defensive measures due to their ability to process and learn from heterogeneous cyber threat data. In this paper, we look into the application of GNNs in aiding to break each stage of one of the most renowned attack life cycles, the Lockheed Martin Cyber Kill Chain. We address each phase of CKC and discuss how GNNs contribute to preparing and preventing an attack from a defensive standpoint. Furthermore, We also discuss open research areas and further improvement scopes.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 3 Pith papers

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Network-informed Prompt Engineering against Organized Astroturf Campaigns under Extreme Class Imbalance

    cs.CL 2025-01 conditional novelty 5.0 of 10

    Frozen LLMs with balanced retrieval-augmented prompting detect astroturf campaigns better than GNN baselines on a 2016 US election dataset, but the reported margins are overstated.

  2. IRSKG: Unified Intrusion Response System Knowledge Graph Ontology for Cyber Defense

    cs.CR 2024-11 conditional novelty 4.0 of 10

    A unified property-graph ontology (IRSKG) for intrusion response systems, demonstrated on a toy network-log example, without empirical validation of the claimed integration benefits.

  3. Airborne Neural Network

    cs.LG 2025-05 unverdicted novelty 3.0 of 10

    A concept for running large neural networks over cooperating airborne devices, controlled by a master controller and layer controllers, for low-latency in-flight AI.

Pith tools