Integrating Large Language Models for Automated Vulnerability Scanning and Reporting in Network Hosts

dc.contributor.authorSandaruwan, M. T.
dc.contributor.authorWijayanayake, J.
dc.contributor.authorSenanayake, J.
dc.date.accessioned2025-11-17T07:23:49Z
dc.date.issued2025
dc.description.abstractThis research explores integrating Large Language Models (LLMs) like GPT-4 and Claude 3.5 into cybersecurity vulnerability scanning to enhance automation and effectiveness. Current tools' reliance on manual updates and human expertise is highlighted. A literature review identified effective modular architectures and Retrieval-Augmented Generation (RAG) systems for grounding LLMs with cybersecurity knowledge. A Proof of Concept (PoC) tool, developed in Python and tested on the Metasploitable system, evaluated three LLM implementations: GPT-4 Omni, GPT-4 Omni with RAG, and Claude 3.5 Sonnet. The results showed GPT-4 Omni outperformed Claude 3.5, with RAG significantly improving performance. The tool achieved 80% accuracy in identifying and resolving vulnerabilities. The study underscores the potential of LLMs to revolutionize vulnerability scanning, making advanced cybersecurity more accessible and effective. Future work should address limitations, enable interactive sessions, create new exploits, and tackle more complex challenges.
dc.identifier.citationSandaruwan, M. T., Wijayanayake, J., & Senanayake, J. (2025). Integrating large language models for automated vulnerability scanning and reporting in network hosts. Smart Computing and Systems Engineering (SCSE 2025). Department of Industrial Management, Faculty of Science, University of Kelaniya, Sri Lanka. (P. 53).
dc.identifier.urihttp://repository.kln.ac.lk/handle/123456789/30370
dc.publisherDepartment of Industrial Management, Faculty of Science, University of Kelaniya, Sri Lanka.
dc.subjectcybersecurity
dc.subjectexploiting
dc.subjectllm
dc.subjectscanning
dc.subjectvulnerability
dc.titleIntegrating Large Language Models for Automated Vulnerability Scanning and Reporting in Network Hosts
dc.typeArticle

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
SCSE Abstract Proceedings 2025-77.pdf
Size:
28.64 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: