Active PAR

P3526

Guide for Threat Intelligence Retrieval Framework Based on Large Language Model

This guide proposes a technical framework for using Large Language Model (LLM) technology for threat intelligence retrieval, including reference architecture, workflow, and technical implementations. LLM-based threat intelligence retrieval can be used to provide real-time information retrieval for users in cybersecurity operations and to offer threat intelligence retrieval services for cybersecurity products. It includes four parts: component layer, core layer, service layer, and maintenance management. The workflow of LLM-based threat intelligence retrieval consists of four steps: retrieval input, semantic parsing, retrieval execution, and result output. Implementations are proposed based on the functionality of each layer.

Sponsor Committee
C/AISC - Artificial Intelligence Standards Committee
Status
Active PAR
PAR Approval
2025-02-13

Working Group Details

Society
IEEE Computer Society
Learn More About IEEE Computer Society
Sponsor Committee
C/AISC - Artificial Intelligence Standards Committee
Working Group
LLM-TIR - Threat Intelligence Retrieval Framework Based on Large Language Model
IEEE Program Manager
Christy Bahn
Contact Christy Bahn
Working Group Chair
Richard Tong

Other Activities From This Working Group

Current projects that have been authorized by the IEEE SA Standards Board to develop a standard.


No Active Projects

Standards approved by the IEEE SA Standards Board that are within the 10-year lifecycle.


No Active Standards

These standards have been replaced with a revised version of the standard, or by a compilation of the original active standard and all its existing amendments, corrigenda, and errata.


No Superseded Standards

These standards have been removed from active status through a ballot where the standard is made inactive as a consensus decision of a balloting group.


No Inactive-Withdrawn Standards

These standards are removed from active status through an administrative process for standards that have not undergone a revision process within 10 years.


No Inactive-Reserved Standards
Subscribe to our Newsletter

Sign up for our monthly newsletter to learn about new developments, including resources, insights and more.