paper-with-me

Papers

Goal-Driven Risk Assessment for LLM-Powered Systems: A Healthcare Case Study

2026-03-04 · Neha Nagaraja, Hayretdin Bahsi arxiv

While incorporating LLMs into systems offers significant benefits in critical application areas such as healthcare, new security challenges emerge due to the potential cyber kill chain cycles that combine adversarial model, prompt injection and conventional cyber attacks. Threat modeling methods enable the system designers to identify potential cyber threats and the relevant mitigations during the early stages of development. Although the cyber security community has extensive experience in applying these methods to software-based systems, the elicited threats are usually abstract and vague, limiting their effectiveness for conducting proper likelihood and impact assessments for risk prioritization, especially in complex systems with novel attacks surfaces, such as those involving LLMs. In this study, we propose a structured, goal driven risk assessment approach that contextualizes the threats with detailed attack vectors, preconditions, and attack paths through the use of attack trees. We demonstrate the proposed approach on a case study with an LLM agent-based healthcare system. This study harmonizes the state-of-the-art attacks to LLMs with conventional ones and presents possible attack paths applicable to similar systems. By providing a structured risk assessment, this study makes a significant contribution to the literature and advances the secure-by-design practices in LLM-based systems.

📄 PDF Abstract BibTeX arXiv:2603.03633

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Where Do LLM-based Systems Break? A System-Level Security Framework for Risk Assessment and Treatment

2026-03-08 · Neha Nagaraja, Hayretdin Bahsi arxiv

Large Language Models (LLMs) are increasingly integrated into safety-critical workflows, yet existing security analyses remain fragmented and often isolate model behavior from the broader system context. This work introd…

From Incomplete Architecture to Quantified Risk: Multimodal LLM-Driven Security Assessment for Cyber-Physical Systems

2026-04-07 · Shaofei Huang, Christopher M. Poskitt, Lwin Khin Shar arxiv

Cyber-physical systems often contend with incomplete architectural documentation or outdated information resulting from legacy technologies, knowledge management gaps, and the complexity of integrating diverse subsystems…

Few-Shot Learning

Suicide Risk Assessment from AI-powered Video Surveillance: An Interpretable Framework for Prevention in Metro Stations

2026-05-21 · Safwen Naimi, Wassim Bouachir, Guillaume-Alexandre Bilodeau, Brian Mishara arxiv

Understanding and monitoring human behavior in metro stations play an important role in supporting suicide prevention efforts, where early identification of high-risk situations can enable timely intervention. This requi…

Semantic SegmentationActivity Recognition

LADRI: LeArning-based Dynamic Risk Indicator in Automated Driving System

2024-01-04 · Anil Ranjitbhai Patel, Peter Liggesmeyer

As the horizon of intelligent transportation expands with the evolution of Automated Driving Systems (ADS), ensuring paramount safety becomes more imperative than ever. Traditional risk assessment methodologies, primaril…

Navigate

Toward Holistic Evaluation of Recommender Systems Powered by Generative Models

2025-04-09 · Yashar Deldjoo, Nikhil Mehta, Maheswaran Sathiamoorthy, Shuai Zhang 외

Recommender systems powered by generative models (Gen-RecSys) extend beyond classical item ranking by producing open-ended content, which simultaneously unlocks richer user experiences and introduces new risks. On one ha…

Bias DetectionRecommendation Systems