{"ID":2856357,"CreatedAt":"2026-06-01T04:54:23.091178241Z","UpdatedAt":"2026-06-01T04:54:23.091178241Z","DeletedAt":null,"paper_url":"https://arxiv.org/abs/2510.11398","arxiv_id":"2510.11398","title":"Living Off the LLM: How LLMs Will Change Adversary Tactics","abstract":"In living off the land attacks, malicious actors use legitimate tools and processes already present on a system to avoid detection. In this paper, we explore how the on-device LLMs of the future will become a security concern as threat actors integrate LLMs into their living off the land attack pipeline and ways the security community may mitigate this threat.","short_abstract":"In living off the land attacks, malicious actors use legitimate tools and processes already present on a system to avoid detection. In this paper, we explore how the on-device LLMs of the future will become a security concern as threat actors integrate LLMs into their living off the land attack pipeline and ways the se...","url_abs":"https://arxiv.org/abs/2510.11398","url_pdf":"https://arxiv.org/pdf/2510.11398v1","authors":"[\"Sean Oesch\",\"Jack Hutchins\",\"Luke Koch\",\"Kevin Kurian\"]","published":"2025-10-13T13:41:27Z","proceeding":"cs.CR","tasks":"[\"cs.CR\",\"cs.AI\"]","methods":"[\"Large Language Model\"]","has_code":false}
