{"id":"https://openalex.org/W4410636995","doi":"https://doi.org/10.1145/3701716.3715171","title":"CyberAlly: Leveraging LLMs and Knowledge Graphs to Empower Cyber Defenders","display_name":"CyberAlly: Leveraging LLMs and Knowledge Graphs to Empower Cyber Defenders","publication_year":2025,"publication_date":"2025-05-08","ids":{"openalex":"https://openalex.org/W4410636995","doi":"https://doi.org/10.1145/3701716.3715171"},"language":"en","primary_location":{"id":"doi:10.1145/3701716.3715171","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3701716.3715171","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Companion Proceedings of the ACM on Web Conference 2025","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5048500989","display_name":"Minjune Kim","orcid":"https://orcid.org/0000-0002-6161-7982"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Minjune Kim","raw_affiliation_strings":["CSIRO's Data61, Sydney, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Sydney, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109712935","display_name":"Jeff Wang","orcid":null},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Jeff Wang","raw_affiliation_strings":["CSIRO's Data61, Sydney, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Sydney, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037106850","display_name":"Kristen Moore","orcid":"https://orcid.org/0000-0002-9962-5080"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Kristen Moore","raw_affiliation_strings":["CSIRO's Data61, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084412291","display_name":"Diksha Goel","orcid":"https://orcid.org/0000-0001-8212-8793"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Diksha Goel","raw_affiliation_strings":["CSIRO's Data61, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081805488","display_name":"Derui Wang","orcid":"https://orcid.org/0000-0003-1388-7715"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Derui Wang","raw_affiliation_strings":["CSIRO's Data61, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5003096709","display_name":"Ahmad Mohsin","orcid":"https://orcid.org/0000-0001-9023-0851"},"institutions":[{"id":"https://openalex.org/I12079687","display_name":"Edith Cowan University","ror":"https://ror.org/05jhnwe22","country_code":"AU","type":"education","lineage":["https://openalex.org/I12079687"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Ahmad Mohsin","raw_affiliation_strings":["Edith Cowan University, Perth, WA, Australia"],"affiliations":[{"raw_affiliation_string":"Edith Cowan University, Perth, WA, Australia","institution_ids":["https://openalex.org/I12079687"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5055670196","display_name":"Ahmed Ibrahim","orcid":"https://orcid.org/0000-0002-4760-3533"},"institutions":[{"id":"https://openalex.org/I12079687","display_name":"Edith Cowan University","ror":"https://ror.org/05jhnwe22","country_code":"AU","type":"education","lineage":["https://openalex.org/I12079687"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Ahmed Ibrahim","raw_affiliation_strings":["Edith Cowan University, Perth, WA, Australia"],"affiliations":[{"raw_affiliation_string":"Edith Cowan University, Perth, WA, Australia","institution_ids":["https://openalex.org/I12079687"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5077501988","display_name":"Robin Doss","orcid":"https://orcid.org/0000-0001-6143-6850"},"institutions":[{"id":"https://openalex.org/I149704539","display_name":"Deakin University","ror":"https://ror.org/02czsnj07","country_code":"AU","type":"education","lineage":["https://openalex.org/I149704539"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Robin Doss","raw_affiliation_strings":["Deakin University, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"Deakin University, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I149704539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084022157","display_name":"Seyit Camtepe","orcid":"https://orcid.org/0000-0001-6353-8359"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Seyit Camtepe","raw_affiliation_strings":["CSIRO's Data61, Sydney, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"CSIRO's Data61, Sydney, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5035745103","display_name":"Helge Janicke","orcid":"https://orcid.org/0000-0002-1345-2829"},"institutions":[{"id":"https://openalex.org/I12079687","display_name":"Edith Cowan University","ror":"https://ror.org/05jhnwe22","country_code":"AU","type":"education","lineage":["https://openalex.org/I12079687"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Helge Janicke","raw_affiliation_strings":["Edith Cowan University, Perth, WA, Australia"],"affiliations":[{"raw_affiliation_string":"Edith Cowan University, Perth, WA, Australia","institution_ids":["https://openalex.org/I12079687"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":10,"corresponding_author_ids":["https://openalex.org/A5048500989"],"corresponding_institution_ids":["https://openalex.org/I1292875679","https://openalex.org/I42894916"],"apc_list":null,"apc_paid":null,"fwci":6.3055,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.95882701,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"2851","last_page":"2854"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9912999868392944,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9912999868392944,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12519","display_name":"Cybercrime and Law Enforcement Studies","score":0.9879000186920166,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10270","display_name":"Blockchain Technology Applications and Security","score":0.9711999893188477,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5316553711891174},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5301077365875244},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.4712184965610504},{"id":"https://openalex.org/keywords/knowledge-management","display_name":"Knowledge management","score":0.3458307087421417},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.3378801941871643}],"concepts":[{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5316553711891174},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5301077365875244},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.4712184965610504},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.3458307087421417},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.3378801941871643}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/3701716.3715171","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3701716.3715171","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Companion Proceedings of the ACM on Web Conference 2025","raw_type":"proceedings-article"},{"id":"pmh:oai:figshare.com:article/29276573","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference contribution"},{"id":"pmh:oai:ro.ecu.edu.au:ecuworks2022-2026-7535","is_oa":true,"landing_page_url":"https://ro.ecu.edu.au/ecuworks2022-2026/6535","pdf_url":null,"source":{"id":"https://openalex.org/S2765015692","display_name":"Australasian Journal of Paramedicine","issn_l":"2202-7270","issn":["2202-7270"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Research outputs 2022 to 2026","raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:figshare.com:article/29276573","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference contribution"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":9,"referenced_works":["https://openalex.org/W1999228492","https://openalex.org/W2017434035","https://openalex.org/W2172122080","https://openalex.org/W2912296587","https://openalex.org/W3027879771","https://openalex.org/W3034563243","https://openalex.org/W3198556094","https://openalex.org/W4328028675","https://openalex.org/W4389382844"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"The":[0],"increasing":[1],"frequency":[2],"and":[3,88,113,133,141,151],"sophistication":[4],"of":[5,62,90,135],"cyberattacks":[6],"demand":[7],"innovative":[8],"approaches":[9],"to":[10,21,44,84,144],"strengthen":[11],"defense":[12],"capabilities.":[13],"Training":[14],"on":[15,119],"live":[16],"infrastructure":[17],"poses":[18],"significant":[19],"risks":[20],"organizations,":[22],"making":[23],"secure,":[24],"isolated":[25],"cyber":[26,63,99],"ranges":[27],"an":[28,102],"essential":[29],"tool":[30],"for":[31,68],"conducting":[32],"Red":[33,123],"vs.":[34,124],"Blue":[35,91,110,125],"Team":[36,111,126],"training":[37,54],"events.":[38],"These":[39],"events":[40],"enable":[41],"security":[42],"teams":[43],"refine":[45],"their":[46],"skills":[47],"without":[48],"impacting":[49],"operational":[50],"environments.":[51],"While":[52],"such":[53],"provides":[55],"a":[56,78],"strong":[57],"foundation,":[58],"the":[59,86,131],"ever-evolving":[60],"nature":[61],"threats":[64,147],"necessitates":[65],"additional":[66],"support":[67],"effective":[69],"defense.":[70],"To":[71],"address":[72],"this":[73],"challenge,":[74],"we":[75],"introduce":[76],"CyberAlly,":[77],"knowledge":[79],"graph-enhanced":[80],"AI":[81],"assistant":[82],"designed":[83],"enhance":[85],"efficiency":[87],"effectiveness":[89],"Teams":[92],"during":[93],"incident":[94,139],"response.":[95],"Integrated":[96],"into":[97],"our":[98],"range":[100],"alongside":[101],"open-source":[103],"SIEM":[104],"platform,":[105],"CyberAlly":[106,136],"monitors":[107],"alerts,":[108],"tracks":[109],"actions,":[112],"suggests":[114],"tailored":[115],"mitigation":[116],"recommendations":[117],"based":[118],"insights":[120],"from":[121],"prior":[122],"exercises.":[127],"This":[128],"demonstration":[129],"highlights":[130],"feasibility":[132],"impact":[134],"in":[137],"augmenting":[138],"response":[140],"equipping":[142],"defenders":[143],"tackle":[145],"evolving":[146],"with":[148],"greater":[149],"precision":[150],"confidence.":[152]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":1}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
