AIセキュリティポータル K Program
Using Retriever Augmented Large Language Models for Attack Graph Generation
Share
Abstract
As the complexity of modern systems increases, so does the importance of assessing their security posture through effective vulnerability management and threat modeling techniques. One powerful tool in the arsenal of cybersecurity professionals is the attack graph, a representation of all potential attack paths within a system that an adversary might exploit to achieve a certain objective. Traditional methods of generating attack graphs involve expert knowledge, manual curation, and computational algorithms that might not cover the entire threat landscape due to the ever-evolving nature of vulnerabilities and exploits. This paper explores the approach of leveraging large language models (LLMs), such as ChatGPT, to automate the generation of attack graphs by intelligently chaining Common Vulnerabilities and Exposures (CVEs) based on their preconditions and effects. It also shows how to utilize LLMs to create attack graphs from threat reports.
A2g2v: Automatic attack graph generation and visualization and its applications to computer and scada networks
Alaa T Al Ghazo, Mariam Ibrahim, Hao Ren, Ratnesh Kumar
Published: 2019
Automated generation and analysis of attack graphs
Oleg Sheyner, Joshua Haines, Somesh Jha, Richard Lippmann, Jeannette M Wing
Published: 2002
A scalable approach to attack graph generation
Xinming Ou, Wayne F Boyer, Miles A McQueen
Published: 2006
How secure is your iot network?
Josh Payne, Karan Budhraja, Ashish Kundu
Published: 2019
Agbuilder: an ai tool for automated attack graph building, analysis, and refinement
Bruhadeshwar Bezawada, Indrajit Ray, Kushagra Tiwary
Published: 2019
Ttpdrill: Automatic and accurate extraction of threat actions from unstructured text of cti sources
G. Husari, E. Al-Shaer, M. Ahmed, B. Chu, X. Niu
Published: 2017
Two formal analyses of attack graphs
Somesh Jha, Oleg Sheyner, Jeannette Wing
Published: 2002
Combinatorial analysis of network security
Steven E Noel, Brian O’Berry, Charles Hutchinson, Sushil Jajodia, Lynn M Keuthan, Andy Nguyen
Published: 2002
Mulval: A logic-based network security analyzer
Xinming Ou, Sudhakar Govindavajhala, Andrew W Appel, et al
Published: 2005
Attack dynamics: an automatic attack graph generation framework based on system topology, capec, cwe, and cve databases
Chris Hankin, Pasquale Malacaria, et al
Published: 2022
Share