Skip to content
Conference

An Explainable Hybrid Transformer-XGBoost Framework for Cyber Threat Detection

Jul 2026 · 2026 7th International Conference on Smart Systems and Inventive Technology (ICSSIT) · pp. 1124-1131 · 0 citations · 17 references

Abstract

The growing complexity and frequency of cyber-attacks against today's digital infrastructure are creating cyber threat detection and response challenges. In this paper, two Machine Learning (ML) and Natural Language Processing (NLP) methods based on Explainable Artificial Intelligence (XAI) for intelligent cyber threat detection and response are presented and compared on the basis of the SOREL-20M dataset. The model XAI-Transformer-XGBoost was developed and tested in MATLAB Simulink and Python TensorFlow using a series of simulations to incorporate a deep contextual threat representation with explainable ensemble classification. The proposed hybrid model was evaluated with CNN-LSTM, Feature Selection and Ensemble Generative Model (FSEGM), and standalone XGBoost models in terms of Accuracy, Sensitivity, Specificity, Training Time, and Cohen’s Kappa Score. Experimental results showed that the proposed XAI-Transformer-XGBoost model outperformed CNN-LSTM (96.41% accuracy), FSEGM (97.83% accuracy), and XGBoost (98.26% accuracy) with an accuracy of 99.12%, a sensitivity of 98.87%, a specificity of 99.34%, a Cohen’s Kappa of 0.982 and a training time of 118 seconds. The proposed approach showed improvements of 2.81%, 1.31%, and 0.87% in accuracy; 3.45%, 1.84%, and 1.12% in sensitivity; 2.96%, 1.52%, and 0.95% in specificity; and 4.91%, 2.71%, and 1.66% in Cohen’s Kappa score over CNN-LSTM, FSEGM, and XGBoost, respectively, while reducing training time by 21.9%, 14.5%, and 8.4%. The results show that providing explainable AI alongside hybrid Transformer and gradient-boosting methods is an effective approach that can enhance cyber threat intelligence, increase transparency of AI models, and facilitate faster and more dependable automated security response systems in practical cybersecurity applications.

View source

Similar papers

Open access Aug 2026

Leakage-Free, Cross-Speed, and Cross-Session Evaluation of Vibration-Based Propulsion-Shaft Misalignment Diagnosis in Electric Ships: A Real-Time Detect-Then-Grade Cascade

Vibration-based diagnosis of propulsion-shaft misalignment supports condition monitoring in electric ships, but reported accuracies are often inflated by overlapping-window leakage and by untested cross-recording, cross-session, and cross-speed generalization. We evaluated leakage-free, deployment-oriented protocols (c...

Jin-Man Kim, Heon-Hui Kim, T. Nam · 0 citations
Open access Aug 2026

Mobil Cihaz Kriminalistikasında Yaddaş Seqmentlərinin Süni İntellekt Əsasında Təsnifatı

Məqalədə mobil cihaz kriminalistikasında 4096 baytlıq yaddaş seqmentlərinin süni intellekt əsasında kriminalistik tip təsnifatı problemi araşdırılır. Anonimləşdirilmiş real mobil cihazdan əldə olunmuş 1692 nişanlanmış fayl əsasında 89177 seqmentdən ibarət dataset formalaşdırılmış və müxtəlif siniflər üzrə təsnifat apar...

Rahib Ağababayev, Yadigar Imamverdiyev · 0 citations
Open access Aug 2026

Implementasi Algoritma Random Forest untuk Prediksi Perkembangan Anak Terintegrasi dengan Sistem Informasi Administrasi (Studi Kasus: TK Kramat Jati)

Early childhood development is a crucial phase that requires continuous monitoring to ensure optimal growth. However, TK Kramat Jati still faces obstacles in managing administrative data and child development assessments that are conducted manually and not yet integrated. This research aims to develop a web-based admin...

Nur Diasih · 0 citations
Open access 2026

A Hybridized Artificial Neural Network and Support Vector Machine Model in Power Transmission Fault Detection

The proposed framework employs ANN as a nonlinear feature embedding and a Radial Basis Function SVM subsequently classifies using an Error-Correcting Output Codes (ECOC) strategy, validating the effectiveness of the proposed hybridisation strategy for intelligent transmission system protection.

Kudu Abubakar Mohammed, Balogun Monsurat O., Adesina M. Lambe et al. · 0 citations
Open access Aug 2026

Strateji Qərar Qəbulu Sistemlərində Neyron Şəbəkə Əsaslı Data Fusion Modellərinin Multi-Laylı Arxitekturası və Təhlükəsizlik Aspektləri

Bu tədqiqat işində müasir dövlət və regional idarəetmə sistemlərində heterogen məlumatların sintezi üçün hazırlanmış “DataFusion Strateji Əməliyyat Sistemi” platformasının elmipraktiki əsasları təqdim olunur. Tədqiqatın mərkəzində dayanan Model Architecture v4.0 müxtəlif formatlı (SQL, NoSQL, coğrafi və mətn) verilənlə...

Rüstəm Şəfaqətov · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.