• Home
  • Search
  • Can LLM-generated misinformation be detected: A study on Cyber Threat Intelligence
  • Cite Icon6
  • https://doi.org/10.1016/j.future.2025.107877Copy DOI Icon

Can LLM-generated misinformation be detected: A study on Cyber Threat Intelligence

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Given the increasing number and severity of cyber attacks, there has been a surge in cybersecurity information across various mediums such as posts, news articles, reports, and other resources. Cyber Threat Intelligence (CTI) involves processing data from these cybersecurity sources, enabling professionals and organizations to gain valuable insights. However, with the rapid dissemination of cybersecurity information, the inclusion of fake CTI can lead to severe consequences, including data poisoning attacks. To address this challenge, we have implemented a three-step strategy: generating synthetic CTI, evaluating the quality of the generated CTI, and detecting fake CTI. Unlike other subdomains, such as fake COVID news detection, there is currently no publicly available dataset specifically tailored for fake CTI detection research. To address this gap, we first establish a reliable groundtruth dataset by utilizing domain-specific cybersecurity data to fine-tune a Large Language Model (LLM) for synthetic CTI generation. We then employ crowdsourcing techniques and advanced synthetic data verification methods to evaluate the quality of the generated dataset, introducing a novel evaluation methodology that combines quantitative and qualitative approaches. Our comprehensive evaluation reveals that the generated CTI cannot be distinguished from genuine CTI by human annotators, regardless of their computer science background, demonstrating the effectiveness of our generation approach. We benchmark various misinformation detection techniques against our groundtruth dataset to establish baseline performance metrics for identifying fake CTI. By leveraging existing techniques and adapting them to the context of fake CTI detection, we provide a foundation for future research in this critical field. To facilitate further research, we make our code, dataset, and experimental results publicly available on GitHub.

Similar Papers
  • Research Article

Enhancing Cyber Threat Intelligence (CTI) Exchange: A Governance Model for the DYNAMO Platform

  • Jun 25, 2025
  • European Conference on Cyber Warfare and Security
  • Jyri Rajamäki +2
  • Research Article
  • Citations13

AI-Based Holistic Framework for Cyber Threat Intelligence Management

  • Jan 01, 2025
  • IEEE Access
  • Arnolnt Spyros +8
  • Research Article
  • Citations34

Cyber Threat Intelligence for Improving Cybersecurity and Risk Management in Critical Infrastructure

  • Nov 28, 2019
  • Journal of Universal Computer Science
  • Halima Ibrahim Kure +1
  • PDF
  • Research Article
  • Citations35

Towards an AI-Enhanced Cyber Threat Intelligence Processing Pipeline

  • May 22, 2024
  • Electronics
  • Lampis Alevizos +1
  • PDF
  • Research Article
  • Citations15

Generative AI for cyber threat intelligence: applications, challenges, and analysis of real-world case studies

  • Aug 20, 2025
  • Artificial Intelligence Review
  • Prasasthy Balasubramanian +6
  • Research Article
  • Citations9

Healthcare Security Incident Response Strategy - A Proactive Incident Response (IR) Procedure

  • Feb 23, 2022
  • Security and Communication Networks
  • Ying He +3
  • PDF
  • Research Article
  • Citations8

Attack Behavior Extraction Based on Heterogeneous Cyberthreat Intelligence and Graph Convolutional Networks

  • Jan 01, 2023
  • Computers, Materials & Continua
  • Binhui Tang +5
  • PDF
  • Research Article
  • Citations4

Cyber Threat Intelligence meets the Analytic Tradecraft

  • Dec 11, 2024
  • ACM Transactions on Privacy and Security
  • Björn Bjurling +1
  • Conference Article
  • Citations27

IoCMiner: Automatic Extraction of Indicators of Compromise from Twitter

  • Dec 01, 2019
  • Amirreza Niakanlahiji +3
  • Research Article

Redefining Cyber Threat Intelligence with Artificial Intelligence: From Data Processing to Predictive Insights and Human–AI Collaboration

  • Feb 06, 2026
  • Applied Sciences
  • Mateo Barrios-González +3
  • PDF
  • Research Article
  • Citations4

Weighted quality criteria for cyber threat intelligence: assessment and prioritisation in the MISP data model

  • Jun 19, 2025
  • International Journal of Information Security
  • Dimitrios Chatziamanetoglou +1
  • Research Article
  • Citations15

Navigating the Shadows: Manual and Semi-Automated Evaluation of the Dark Web for Cyber Threat Intelligence

  • Jan 01, 2024
  • IEEE Access
  • Philipp Kühn +2
  • Research Article
  • Citations9

Cyber Threat Intelligence: Current Trends and Future Perspectives

  • Jun 23, 2023
  • Journal of Engineering Research and Reports
  • Burak Cinar
  • Research Article
  • Citations53

BFLS: Blockchain and Federated Learning for sharing threat detection models as Cyber Threat Intelligence

  • Feb 03, 2023
  • Computer Networks
  • Tongtong Jiang +4
  • Supplementary Content
  • Citations2

Inferring Cyber Threat Intelligence -- A Knowledge Graph-based Approach

  • Feb 10, 2021
  • Nidhi Rastogi +6
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.