{"id":"W4415974768","doi":"10.1016/j.procs.2025.09.260","title":"Enabling Real-Time, Explainable DDoS Mitigation via On-Premise Large Language Models and Flow Analysis","year":2025,"lang":"en","type":"article","venue":"Procedia Computer Science","topic":"Network Security and Intrusion Detection","field":"Computer Science","cited_by":1,"is_retracted":false,"has_abstract":true,"ca_institutions":"Royal Military College of Canada","funders":"","keywords":"Correctness; Denial-of-service attack; Intrusion detection system; Firewall (physics); Cloud computing; Flow network; Application layer DDoS attack; Network security; Botnet","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.001227504,0.0008992511,0.0004323361,0.0007770449,0.0003694299,0.001682926,0.001235636,0.0008539488,0.001900558],"category_scores_gemma":[0.005299675,0.0003168064,0.00100368,0.0002290922,0.0007457738,0.002634587,0.001659701,0.001904479,0.0008998004],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0008518115,"about_ca_system_score_gemma":0.001594881,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.003152925,"about_ca_topic_score_gemma":0.004425438,"domain_scores_codex":[0.9991642,0.0002923846,0.00004542497,0.0001970147,0.0002357577,0.00006526534],"domain_scores_gemma":[0.9976459,0.001341984,0.000227308,0.0004462201,0.000272021,0.00006664031],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"not_applicable","study_design_scores_codex":[0.0004786415,0.0009065859,0.01069047,0.0003617492,0.0002088726,0.0006375728,0.0009705899,0.385306,0.06289355,0.04635892,0.008445979,0.482741],"study_design_scores_gemma":[0.000008647863,0.00003955432,0.0003115812,0.00001533683,0.00001600929,0.00006422475,0.00003792738,0.9727688,0.01026948,0.01403501,0.002417624,0.00001572377],"study_design_candidate":"not_applicable","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.01789916,0.00008836577,0.9732982,0.0004224505,0.00003062379,0.00009021611,0.0001877239,0.006996524,0.0009868317],"genre_scores_gemma":[0.5342223,0.0002639399,0.4604941,0.0004407501,0.00005717294,0.0001978528,0.000906385,0.0006358107,0.002781657],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.003152925,"threshold_uncertainty_score":0.006491721,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.006116768476068697,"score_gpt":0.2345347288779298,"score_spread":0.2284179604018611,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}