Skip to content

A demonstration of an autonomous approach for cyberattack mitigation

Unknown authors
· 0 citations · 5 references

TL;DR

This demo presents a looping process that autonomously mitigates ongoing attacks by extracting security policies from intrusion detection system alerts and automatically reconfiguring distributed firewalls via a provably correct and optimized approach.

View source

Similar papers

Open access Jul 2026

Automated Cyberattack Response System: A Combination of AI and Human Control with Recommendations for Measurable Actions

The findings suggest that combining open-source SIEM, workflow automation, and LLM-based reasoning with human supervision offers a practical, low-cost, and reliable approach for strengthening incident response capability in resource-constrained environments.

Febrian Sulistyo Budi, Bondan Wahyu, Pamekas et al. · 0 citations
Preprint Aug 2026

Autonomous Cyber Defense: Real-Time Attack Detection and Mitigation in Software-Defined Networks Using Machine Learning

A closed-loop framework that detects and blocks attacks in software-defined networks without operator involvement is presented, evaluating its performance against this stringent temporal constraint rather than relying exclusively on detection accuracy.

A. Amaral, F. Moro, A. Malheiro · 0 citations
Open access Aug 2026

Integrated Threat Hunting and SOAR Workflow for Autonomous Cybersecurity Operations

face of these evolving dangers. It argues that while compliance-based frameworks provide a necessary governance foundation, they are insufficient without the integration of proactive strategies like Threat Hunting and Threat Intelligence. In this paper, we present the Integrated Threat Hunting and Security Orchestration, Automation and Response (SOAR) Automation Workflow (THSAW) highlighting the necessity of shifting from a reactive "alert-driven" posture to a proactive "hunt-driven" methodology to ensure organizational resilience. Using a design science paradigm, we describe the solution design rationale and artifact development. The proactive approach can be used to develop the offensive security-aware environment for organizations to uncover advanced attack mechanisms and test their ability for attack detection. Experimental results demonstrate the workflow's effectiveness in autonomous threat detection, behavioral analysis, and automated incident response.

Austin Oguejiofor Amaechi, Ekangwo Hernadez Ebolo, Kum Bertrand Kum et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.