DiscoverTalos TakesTeaching LLMs to spot malicious PowerShell scripts
Teaching LLMs to spot malicious PowerShell scripts

Teaching LLMs to spot malicious PowerShell scripts

Update: 2025-06-26
Share

Description

Hazel welcomes back Ryan Fetterman from the SURGe team to explore his new research on how large language models (LLMs) can assist those who work in security operations centers to identify malicious PowerShell scripts. From teaching LLMs through examples, to using retrieval-augmented generation and fine-tuning specialized models, Ryan walks us through three distinct approaches, with surprising performance gains. For the full research, head to https://www.splunk.com/en_us/blog/security/guiding-llms-with-security-context.html

Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Teaching LLMs to spot malicious PowerShell scripts

Teaching LLMs to spot malicious PowerShell scripts

Cisco Talos