OCR-APT: Reconstructing APT Stories through Subgraph Anomaly Detection and LLMs.
☆46Feb 3, 2026Updated 5 months ago
Alternatives and similar repositories for OCR-APT
Users that are interested in OCR-APT are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A framework for building provenance-based intrusion detection systems with neural networks (KDD'26, USENIX Sec'25)☆122Updated this week
- ☆19Apr 24, 2025Updated last year
- Orthrus PIDS (USENIX Sec'25) official code☆48May 11, 2026Updated 2 months ago
- ☆40Jul 21, 2025Updated 11 months ago
- Codes and data for USENIX Security 24 paper "MAGIC: Detecting Advanced Persistent Threats via Masked Graph Representation Learning"☆153Oct 24, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆120Aug 23, 2023Updated 2 years ago
- Flash-IDS is an open-source system developed by the DART Laboratory for advanced intrusion detection using provenance graph representatio…☆10May 15, 2024Updated 2 years ago
- ☆88Feb 24, 2025Updated last year
- [S&P 2024] Understanding and Bridging the Gap Between Unsupervised Network Representation Learning and Security Analytics.☆21Apr 25, 2025Updated last year
- ATLAS: A Sequence-based Learning Approach for Attack Investigation☆178Sep 3, 2022Updated 3 years ago
- Implementation of the paper: "Anomaly Detection in Continuous-Time Temporal Provenance Graphs". The code follows the CTDG framework https…☆23Nov 22, 2023Updated 2 years ago
- ☆136May 3, 2023Updated 3 years ago
- 基于溯源图的入侵/威胁检测相关论文及阅读笔记☆30Nov 30, 2023Updated 2 years ago
- Evading Provenance-Based ML Detectors with Adversarial System Actions☆36Aug 18, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- APT-KGL: An Intelligent APT Detection System Based on Threat Knowledge and Heterogeneous Provenance Graph Learning☆78Jul 8, 2022Updated 4 years ago
- ☆146Jun 17, 2020Updated 6 years ago
- GraphChi's C++ version. Big Data - small machine.☆17Nov 29, 2020Updated 5 years ago
- Code for AttacKG+☆18Nov 22, 2024Updated last year
- Public Arena dataset☆16Jul 20, 2022Updated 4 years ago
- A labeled dataset used for the knowledge graph construction.☆35Nov 30, 2023Updated 2 years ago
- PyTorch implementation of the paper "Privacy-preserving Few-shot Traffic Detection against Advanced Persistent Threats via Federated Meta…☆22Dec 14, 2023Updated 2 years ago
- Material from the DARPA Transparent Computing Program☆243Apr 29, 2020Updated 6 years ago
- CTINexus is a framework that leverages optimized in-context learning of LLMs to enable data-efficient extraction of cyber threat intellig…☆84Feb 25, 2026Updated 4 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- eAudit suite for recording provenance-related system calls on Linux☆20May 20, 2026Updated 2 months ago
- SHADEWATCHER: Recommendation-guided Cyber Threat Analysis using System Audit Records, Oakland'22☆85Jun 6, 2023Updated 3 years ago
- ☆10Aug 27, 2022Updated 3 years ago
- Dueling Double Deep Q Network with Prioritized Experience Replay Memory☆10Aug 19, 2022Updated 3 years ago
- AttacKG: Constructing Knowledge-enhanced Attack Graphs from Cyber Threat Intelligence Reports☆180Mar 23, 2023Updated 3 years ago
- a database that collects data related to APTs from existing public sources through a semi automatic methodology and produces an exhaustiv…☆21Nov 22, 2022Updated 3 years ago
- ☆13Aug 31, 2024Updated last year
- ☆14May 14, 2024Updated 2 years ago
- Muse - Music bot for Google Meet☆18Oct 10, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Analysis of HTTP traffic and detection of anomalous user behavior in allowed actions. UEBA system.☆25Feb 15, 2023Updated 3 years ago
- matlab☆10Aug 16, 2018Updated 7 years ago
- Command line tool for launching attacks against Machine Learning Malware detectors.☆19Jun 18, 2023Updated 3 years ago
- The project will serve as a central repository for VMware Threat Analysis Unit (TAU) to share threat intelligence with the security commu…☆17Mar 25, 2023Updated 3 years ago
- multi-agent pathfinding via dqn☆16May 19, 2021Updated 5 years ago
- A Matlab and Simulink simulation of a False Data Injection against KF State Estimation☆17Jul 7, 2022Updated 4 years ago
- A dataset containing APT group related articles and MITRE ATT&CK technique descriptions☆18Aug 14, 2019Updated 6 years ago