arXiv · 2412.00652
Multi-Agent Collaboration in Incident Response with Large Language Models
Abstract
Incident response (IR) is a critical aspect of cybersecurity, requiring rapid decision-making and coordinated efforts to address cyberattacks effectively. Leveraging large language models (LLMs) as intelligent agents offers a novel approach to enhancing collaboration and efficiency in IR scenarios. This paper explores the application of LLM-based multi-agent collaboration using the Backdoors & Breaches framework, a tabletop game designed for cybersecurity training. We simulate real-world IR dynamics through various team structures, including centralized, decentralized, and hybrid configurations. By analyzing agent interactions and performance across these setups, we provide insights into optimizing multi-agent collaboration for incident response. Our findings highlight the potential of LLMs to enhance decision-making, improve adaptability, and streamline IR processes, paving the way for more effective and coordinated responses to cyber threats.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Zefang Liu. 2024-12-01. Multi-Agent Collaboration in Incident Response with Large Language Models. https://arxiv.org/abs/2412.00652
Cite the original work for its findings. Save a collection to share your selection of sources.