132

Semantic-Aware Parsing for Security Logs

Main:12 Pages
3 Figures
14 Tables
Appendix:8 Pages
Abstract

Security analysts struggle to quickly and efficiently query and correlate log data due to the heterogeneity and lack of structure in real-world logs. Existing AI-based parsers focus on learning syntactic log templates but lack the semantic interpretation needed for querying. Directly querying large language models on raw logs is impractical at scale and vulnerable to prompt injection attacks.

View on arXiv
Comments on this paper