paper-with-me

홈 › Papers

Large Language Models for Explainable Threat Intelligence

2025-11-07 · Tiago Dinis, Miguel Correia, Roger Tavares arxiv

As cyber threats continue to grow in complexity, traditional security mechanisms struggle to keep up. Large language models (LLMs) offer significant potential in cybersecurity due to their advanced capabilities in text processing and generation. This paper explores the use of LLMs with retrieval-augmented generation (RAG) to obtain threat intelligence by combining real-time information retrieval with domain-specific data. The proposed system, RAGRecon, uses a LLM with RAG to answer questions about cybersecurity threats. Moreover, it makes this form of Artificial Intelligence (AI) explainable by generating and visually presenting to the user a knowledge graph for every reply. This increases the transparency and interpretability of the reasoning of the model, allowing analysts to better understand the connections made by the system based on the context recovered by the RAG system. We evaluated RAGRecon experimentally with two datasets and seven different LLMs and the responses matched the reference responses more than 91% of the time for the best combinations.

📄 PDF Abstract BibTeX arXiv:2511.05406

Code (0)

등록된 구현이 없습니다.

Tasks

Information Retrieval

Similar Papers 제목 키워드 기반

Cognitive Threat Intelligence and Explainable Federated Security Analytics for distributed Infrastructure Systems

2026-06-04 · Md. Arifur Rahman, B. M. Taslimul Haque, Md. Iqbal Hossan, Md. Serajul Kabir Chowdhury Rubel arxiv

The increasing adoption of distributed infrastructure systems, cloud computing, Internet of Things (IoT) technologies, and edge-based architectures has significantly expanded the cybersecurity attack surface and introduc…

Intrusion DetectionFederated Learning

LRCTI: A Large Language Model-Based Framework for Multi-Step Evidence Retrieval and Reasoning in Cyber Threat Intelligence Credibility Verification

2025-07-15 · Fengxiao Tang, Huan Li, Ming Zhao, Zongzong Wu 외

Verifying the credibility of Cyber Threat Intelligence (CTI) is essential for reliable cybersecurity defense. However, traditional approaches typically treat this task as a static classification problem, relying on handc…

Language ModelingLanguage ModellingLarge Language ModelNatural Language Inference+1

A Survey on Explainable Artificial Intelligence for Cybersecurity

2023-03-07 · Gaith Rjoub, Jamal Bentahar, Omar Abdel Wahab, Rabeb Mizouni 외

The black-box nature of artificial intelligence (AI) models has been the source of many concerns in their use for critical applications. Explainable Artificial Intelligence (XAI) is a rapidly growing research field that …

Explainable artificial intelligenceExplainable Artificial Intelligence (XAI)Survey

XBreaking: Explainable Artificial Intelligence for Jailbreaking LLMs

2025-04-30 · Marco Arazzi, Vignesh Kumar Kembu, Antonino Nocera, Vinod P

Large Language Models are fundamental actors in the modern IT landscape dominated by AI solutions. However, security threats associated with them might prevent their reliable adoption in critical application scenarios su…

Explainable artificial intelligence

KGV: Integrating Large Language Models with Knowledge Graphs for Cyber Threat Intelligence Credibility Assessment

2024-08-15 · Zongzong Wu, Fengxiao Tang, Ming Zhao, Yufeng Li

Cyber threat intelligence is a critical tool that many organizations and individuals use to protect themselves from sophisticated, organized, persistent, and weaponized cyber attacks. However, few studies have focused on…

Fact CheckingKnowledge GraphsSemantic SimilaritySemantic Textual Similarity