A survey of large language models for cyber threat detection☆

被引:10
|
作者
Chen, Yiren [1 ,2 ]
Cui, Mengjiao [1 ,2 ]
Wang, Ding [1 ,2 ]
Cao, Yiyang [1 ,2 ]
Yang, Peian [1 ,2 ]
Jiang, Bo [1 ,2 ]
Lu, Zhigang [1 ,2 ]
Liu, Baoxu [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
Large language models; Cyber security; Threat detection; Literature review;
D O I
10.1016/j.cose.2024.104016
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing complexity of cyber threats and the expanding scope of cyberspace, there exist progressively more challenges in cyber threat detection. It is proven that most previous threat detection models may become inadequate due to the escalation of hacker attacks. However, recent research has shown that some of these problems can be effectively addressed by Large Language Models (LLMs) directly or indirectly. Nowadays, a growing number of security researchers are adopting LLMs for analyzing various cyber threats. According to the investigation, we found that while there are numerous emerging reviews on the utilization of LLMs in some fields of cyber security, there is currently a lack of a comprehensive review on the application of LLMs in the threat detection stage. Through retrieving and collating existing works in recent years, we examined various threat detection and monitoring tasks for which LLMs may be well-suited, including cyber threat intelligence, phishing email detection, threat prediction, logs analysis, and so on. Additionally, the review explored the specific stages of different detection tasks in which LLMs are involved, evaluating the points at which LLMs are optimized. For instance, LLMs have been found to enhance the interpretability of log analysis in real-time anomaly event discovery. Additionally, we discussed some tasks where LLMs may not be suitable and explored future directions and challenges in this field. By providing a detailed status update and comprehensive insights, this review aims to assist security researchers in leveraging LLMs to enhance existing detection frameworks or develop domain-specific LLMs.
引用
收藏
页数:20
相关论文
共 50 条
  • [41] An autoML network traffic analyzer for cyber threat detection
    Papanikolaou, Alexandros
    Alevizopoulos, Aggelos
    Ilioudis, Christos
    Demertzis, Konstantinos
    Rantos, Konstantinos
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (05) : 1511 - 1530
  • [42] An autoML network traffic analyzer for cyber threat detection
    Alexandros Papanikolaou
    Aggelos Alevizopoulos
    Christos Ilioudis
    Konstantinos Demertzis
    Konstantinos Rantos
    International Journal of Information Security, 2023, 22 : 1511 - 1530
  • [43] Learning Without Forgetting: A New Framework for Network Cyber Security Threat Detection
    Karn, Rupesh Raj
    Kudva, Prabhakar
    Elfadel, Ibrahim M.
    IEEE ACCESS, 2021, 9 : 137042 - 137062
  • [44] Anomaly Detection on Bipartite Graphs for Cyber Situational Awareness and Threat Detection
    Eslami, Mohammed
    Zheng, George
    Eramian, Hamed
    Levchuk, Georgiy
    2017 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2017, : 4741 - 4743
  • [45] Enhancing Threat Detection in Financial Cyber Security Through Auto Encoder-MLP Hybrid Models
    Almahadeen, Layth
    ALMahadin, Ghayth
    Santosh, Kathari
    Aarif, Mohd
    Deb, Pinak
    Syamala, Maganti
    Bala, B. Kiran
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (04) : 924 - 933
  • [46] The Frontier of Data Erasure: A Survey on Machine Unlearning for Large Language Models
    Qu, Youyang
    Ding, Ming
    Sun, Nan
    Thilakarathna, Kanchana
    Zhu, Tianqing
    Niyato, Dusit
    COMPUTER, 2025, 58 (01) : 45 - 57
  • [47] A Survey: Collaborative Hardware and Software Design in the Era of Large Language Models
    Guo, Cong
    Cheng, Feng
    Du, Zhixu
    Kiessling, James
    Ku, Jonathan
    Li, Shiyu
    Li, Ziru
    Ma, Mingyuan
    Molom-Ochir, Tergel
    Morris, Benjamin
    Shan, Haoxuan
    Sun, Jingwei
    Wang, Yitu
    Wei, Chiyue
    Wu, Xueying
    Wu, Yuhao
    Yang, Hao Frank
    Zhang, Jingyang
    Zhang, Junyao
    Zheng, Qilin
    Zhou, Guanglei
    Li, Hai
    Chen, Yiran
    IEEE CIRCUITS AND SYSTEMS MAGAZINE, 2025, 25 (01) : 35 - 57
  • [48] Large language models (LLMs): survey, technical frameworks, and future challenges
    Kumar, Pranjal
    ARTIFICIAL INTELLIGENCE REVIEW, 2024, 57 (09)
  • [49] A Survey on the Integration and Optimization of Large Language Models in Edge Computing Environments
    Bhardwaj, Sarthak
    Singh, Pardeep
    Pandit, Mohammad Khalid
    2024 16TH INTERNATIONAL CONFERENCE ON COMPUTER AND AUTOMATION ENGINEERING, ICCAE 2024, 2024, : 168 - 172
  • [50] Code Clone Detection Techniques Based on Large Language Models
    Almatrafi, Afnan A.
    Eassa, Fathy A.
    Sharaf, Sanaa A.
    IEEE ACCESS, 2025, 13 : 46136 - 46146