paper-with-me

홈 › Papers

Threat Modelling using Domain-Adapted Language Models: Empirical Evaluation and Insights

2026-05-11 · Saba Pourhanifeh, AbdulAziz AbdulGhaffar, Ashraf Matrawy arxiv

Large Language Models(LLMs) are increasingly explored for cybersecurity applications such as vulnerability detection. In the domain of threat modelling, prior work has primarily evaluated a number of general-purpose Large Language Models under limited prompting settings. In this study, we extend the research area of structured threat modelling by systematically evaluating domain-adapted language models of different sizes to their general counterparts. We use both LLMs and Small Language Models(SLMs) that were domain adapted to telecommunications and cybersecuirty. For the structured threat modelling, we selected the widely used STRIDE approach and the application area is 5G security. We present a comprehensive empirical evaluation using 52 different configurations (on 8 different language models) to analyze the impact of 1) domain adaptation, 2) model scale, 3) decoding strategies (greedy vs. stochastic sampling), and 4) prompting technique on STRIDE threat classification. Our results show that domain-adapted models do not consistently outperform their general-purpose counterparts, and decoding strategies significantly affect model behavior and output validity. They also show that while larger models generally achieve higher performance, these gains are neither consistent nor sufficient for reliable threat modelling. These findings highlight fundamental limitations of current LLMs for structured threat modelling tasks and suggest that improvements require more than additional training data or model scaling, motivating the need for incorporating more task-specific reasoning and stronger grounding in security concepts. We present insights on invalid outputs encountered and present suggestions for prompting tailored specifically for STRIDE threat modelling.

📄 PDF Abstract BibTeX arXiv:2605.10808

Code (0)

등록된 구현이 없습니다.

Tasks

Vulnerability DetectionDomain Adaptation

Similar Papers 제목 키워드 기반

MirrorCheck: Efficient Adversarial Defense for Vision-Language Models

2024-06-13 · Samar Fares, Klea Ziu, Toluwani Aremu, Nikita Durasov 외

Vision-Language Models (VLMs) are becoming increasingly vulnerable to adversarial attacks as various novel attack strategies are being proposed against these models. While existing defenses excel in unimodal contexts, th…

Adversarial Defenseimage-classificationImage Classification

Making the Most of Text Semantics to Improve Biomedical Vision--Language Processing

2022-04-21 · Benedikt Boecking, Naoto Usuyama, Shruthi Bannur, Daniel C. Castro 외

Multi-modal data abounds in biomedicine, such as radiology images and reports. Interpreting this data at scale is essential for improving clinical care and accelerating clinical research. Biomedical text with its complex…

Contrastive LearningLanguage ModelingLanguage ModellingMedical Image Classification+3

Unsupervised Domain Discovery using Latent Dirichlet Allocation for Acoustic Modelling in Speech Recognition

2015-09-08 · Mortaza Doulaty, Oscar Saz, Thomas Hain

Speech recognition systems are often highly domain dependent, a fact widely reported in the literature. However the concept of domain is complex and not bound to clear criteria. Hence it is often not evident if data shou…

Acoustic ModellingAutomatic Speech RecognitionAutomatic Speech Recognition (ASR)speech-recognition+1

CP-Bench: Evaluating Large Language Models for Constraint Modelling

2025-06-06 · Kostis Michailidis, Dimos Tsouros, Tias Guns

Combinatorial problems are present in a wide range of industries. Constraint Programming (CP) is a well-suited problem-solving paradigm, but its core process, namely constraint modelling, is a bottleneck for wider adopti…

Code Generation

GA-DAN: Geometry-Aware Domain Adaptation Network for Scene Text Detection and Recognition

2019-07-23 · ICCV 2019 10 · Fangneng Zhan, Chuhui Xue, Shijian Lu

Recent adversarial learning research has achieved very impressive progress for modelling cross-domain data shifts in appearance space but its counterpart in modelling cross-domain shifts in geometry space lags far behind…

Domain AdaptationScene Text DetectionText Detection