PulseAugur
实时 08:21:55
English(EN) SENTINEL: A Multi-Pathway Architecture for Detecting Living-Off-the-Land APT Attacks on Windows Command Lines

新的SENTINEL架构可检测Windows上的复杂APT攻击

研究人员开发了SENTINEL,这是一种新颖的多路径架构,旨在检测Windows命令行上复杂的“借用本地资源”(LOTL)攻击。该系统集成了基于BERT的语义编码、用于处理混淆的字符级CNN以及命令间注意力机制,以识别多阶段攻击模式。在基于Volt Typhoon APT活动数据得出的基准上进行测试,SENTINEL在标准和混淆的恶意命令上均达到了92%以上的准确率,显著优于独立的BERT模型。 AI

影响 通过利用AI进行命令行分析,增强了对高级持续性威胁的检测能力。

排序理由 该集群包含一篇详细介绍网络安全问题新技术方法的学术论文。[lever_c_demoted from research: ic=1 ai=1.0]

在 arXiv cs.AI 阅读 →

AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →

新的SENTINEL架构可检测Windows上的复杂APT攻击

本文如何被排名

Signal score
17 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
该集群包含一篇详细介绍网络安全问题新技术方法的学术论文。[lever_c_demoted from research: ic=1 ai=1.0]
Source corroboration
Single-source cluster
Only one publisher covered this so far. Single-source stories can still rank when the publisher is high-authority, but they lack cross-source corroboration.
Topics
paper, safety
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
Breaking (< 6h)
Fresh story with cross-source coverage still developing. Ranking may shift as more sources report.

完整方法见我们的编辑标准

报道来源 [1]

  1. arXiv cs.AI TIER_1 English(EN) · Ahad Bin Islam Shoeb, Kamrul Hasan, Jamal Uddin Tanvin, Liang Hong, Imtiaz Ahmed, Md Arif Billah, Al Amin ·

    SENTINEL:一种用于检测Windows命令行上“寄生式”APT攻击的多路径架构

    arXiv:2609.14593v1 Announce Type: cross Abstract: Living-Off-the-Land (LOTL) is the dominant evasion technique of Advanced Persistent Threat (APT) actors, exploiting legitimate Windows utilities to conduct malicious operations without deploying custom malware and enabling state-s…