paper-with-me

홈 › Papers

CSTS: A Canonical Security Telemetry Substrate for AI-Native Cyber Detection

2026-03-24 · Abdul Rahman arxiv

Cybersecurity data remains fragmented across vendors, formats, schemas, and deployment environments, forcing AI and analytics programs to spend disproportionate effort on ingestion, normalization, and brittle source-specific engineering. This paper introduces the Canonical Security Telemetry Substrate (CSTS), a canonical, AI-ready telemetry foundation designed to harmonize heterogeneous cyber data into a common representation over persistent entities, typed relations, events, temporal state, and provenance. CSTS is intended to move cybersecurity analytics beyond ad hoc record normalization toward a reusable substrate that supports anomaly detection, graph learning, forecasting, behavior-based modeling, and agentic cyber AI. We formalize the core design principles of CSTS, define its representational components, and explain how it preserves source-specific nuance through explicit mappings and extensible metadata while still enabling portable downstream inference. We further position CSTS as a cloud-agnostic and deployment-agnostic substrate suitable for on-prem, hybrid, and multi-cloud environments. The result is a unifying telemetry model that reduces the blue-collar burden of cyber data engineering and creates a clearer path to scalable, interoperable, and model-agnostic cyber AI.

📄 PDF Abstract BibTeX arXiv:2603.23459

Code (0)

등록된 구현이 없습니다.

Tasks

Anomaly DetectionGraph Learning

Similar Papers 제목 키워드 기반

SECUREVENT: Hybrid AI/ML Security Monitoring for Distributed Event-Based Systems

2026-06-01 · Eric Liang arxiv

Distributed event-based systems have become a common substrate for Internet-scale publish/subscribe services, IoT telemetry, cloud-native microservices, and security operations pipelines. Their loose coupling and asynchr…

Federated LearningAnomaly Detection

phys-MCP: A Control Plane for Heterogeneous Physical Neural Networks

2026-05-05 · Stefan Fischer, Maliheh Hariri, Sebastian Otte arxiv

Physical neural networks (PNNs) embed computation directly in material dynamics, including molecular, chemical, biological, photonic, memristive, and mechanical substrates. They are attractive for edge computing, especia…

Discovery of Crime Event Sequences with Constricted Spatio-Temporal Sequential Patterns

2021-12-03 · Piotr S. Maciąg, Robert Bembenik, Artur Dubrawski

In this article, we introduce a novel type of spatio-temporal sequential patterns called Constricted Spatio-Temporal Sequential (CSTS) patterns and thoroughly analyze their properties. We demonstrate that the set of CSTS…

STS

Beyond Success Rate: Cost-Aware Evaluation of Offensive and Defensive Security Agents

2026-07-16 · Paul Kassianik, Blaine Nelson, Yaron Singer arxiv

Security-agent evaluations commonly measure peak offensive capability under generous inference budgets, emphasizing vulnerability discovery, exploit development, penetration testing, and CTF completion. Such measurements…

An Organization-Scoped LLM Agent Runtime Architecture for Regulated Cybersecurity Operations

2026-05-28 · George Fatouros, Georgios Makridis, George Kousiouris, John Soldatos 외 arxiv

Regulated cybersecurity workflows lack a runtime substrate that enforces organization-level scope across retrieval, tool calls, memory, findings, reports, and audit while remaining model-agnostic and locally deployable. …