A survey of large language models for cyber threat detection☆

被引:10
|
作者
Chen, Yiren [1 ,2 ]
Cui, Mengjiao [1 ,2 ]
Wang, Ding [1 ,2 ]
Cao, Yiyang [1 ,2 ]
Yang, Peian [1 ,2 ]
Jiang, Bo [1 ,2 ]
Lu, Zhigang [1 ,2 ]
Liu, Baoxu [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
Large language models; Cyber security; Threat detection; Literature review;
D O I
10.1016/j.cose.2024.104016
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing complexity of cyber threats and the expanding scope of cyberspace, there exist progressively more challenges in cyber threat detection. It is proven that most previous threat detection models may become inadequate due to the escalation of hacker attacks. However, recent research has shown that some of these problems can be effectively addressed by Large Language Models (LLMs) directly or indirectly. Nowadays, a growing number of security researchers are adopting LLMs for analyzing various cyber threats. According to the investigation, we found that while there are numerous emerging reviews on the utilization of LLMs in some fields of cyber security, there is currently a lack of a comprehensive review on the application of LLMs in the threat detection stage. Through retrieving and collating existing works in recent years, we examined various threat detection and monitoring tasks for which LLMs may be well-suited, including cyber threat intelligence, phishing email detection, threat prediction, logs analysis, and so on. Additionally, the review explored the specific stages of different detection tasks in which LLMs are involved, evaluating the points at which LLMs are optimized. For instance, LLMs have been found to enhance the interpretability of log analysis in real-time anomaly event discovery. Additionally, we discussed some tasks where LLMs may not be suitable and explored future directions and challenges in this field. By providing a detailed status update and comprehensive insights, this review aims to assist security researchers in leveraging LLMs to enhance existing detection frameworks or develop domain-specific LLMs.
引用
收藏
页数:20
相关论文
共 50 条
  • [31] The Al-Based Cyber Threat Landscape: A Survey
    Kaloudi, Nektaria
    Li, Jingyue
    ACM COMPUTING SURVEYS, 2020, 53 (01)
  • [32] Large Language Models for Software Engineering: Survey and Open Problems
    Fan, Angela
    Gokkaya, Beliz
    Harman, Mark
    Lyubarskiy, Mitya
    Sengupta, Shubho
    Yoo, Shin
    Zhang, Jie M.
    2023 IEEE/ACM INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: FUTURE OF SOFTWARE ENGINEERING, ICSE-FOSE, 2023, : 31 - 53
  • [33] The Security of Using Large Language Models: A Survey with Emphasis on ChatGPT
    Zhou, Wei
    Zhu, Xiaogang
    Han, Qing-Long
    Li, Lin
    Chen, Xiao
    Wen, Sheng
    Xiang, Yang
    IEEE-CAA JOURNAL OF AUTOMATICA SINICA, 2025, 12 (01) : 1 - 26
  • [34] Lexical Semantic Change through Large Language Models: a Survey
    Periti, Francesco
    Montanelli, Stefano
    ACM COMPUTING SURVEYS, 2024, 56 (11)
  • [35] Scientific Large Language Models: A Survey on Biological & Chemical Domains
    Zhang, Qiang
    Ding, Keyan
    Lv, Tianwen
    Wang, Xinda
    Yin, Qingyu
    Zhang, Yiwen
    Yu, Jing
    Wang, Yuhao
    Li, Xiaotong
    Xiang, Zhuoyi
    Zhuang, Xiang
    Wang, Zeyuan
    Qin, Ming
    Zhang, Mengyao
    Zhang, Jinlu
    Cui, Jiyu
    Xu, Renjun
    Chen, Hongyang
    Fan, Xiaohui
    Xing, Huabin
    Chen, Huajun
    ACM COMPUTING SURVEYS, 2025, 57 (06)
  • [36] Evolutionary Large Language Models for Hardware Security: A Comparative Survey
    Akyash, Mohammad
    Kamali, Hadi M.
    PROCEEDING OF THE GREAT LAKES SYMPOSIUM ON VLSI 2024, GLSVLSI 2024, 2024, : 496 - 501
  • [37] Software Vulnerability Detection using Large Language Models
    Das Purba, Moumita
    Ghosh, Arpita
    Radford, Benjamin J.
    Chu, Bill
    2023 IEEE 34TH INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING WORKSHOPS, ISSREW, 2023, : 112 - 119
  • [38] Digital forgetting in large language models: a survey of unlearning methods
    Blanco-Justicia, Alberto
    Jebreel, Najeeb
    Manzanares-Salor, Benet
    Sanchez, David
    Domingo-Ferrer, Josep
    Collell, Guillem
    Eeik Tan, Kuan
    ARTIFICIAL INTELLIGENCE REVIEW, 2025, 58 (03)
  • [39] Cyber Threat Intelligence in Risk Management A Survey of the Impact of Cyber Threat Intelligence on Saudi Higher Education Risk Management
    Aljuhami, Amira M.
    Bamasoud, Doaa M.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (10) : 156 - 164
  • [40] Multiscale Hebbian Neural Network for Cyber Threat Detection
    Siddiqui, Sana
    Khan, Muhammad Salman
    Ferens, Ken
    2017 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2017, : 1427 - 1434