Search papers, labs, and topics across Lattice.
This RCR report validates the original paper's findings on using LLMs for penetration testing of enterprise networks, specifically Microsoft Active Directory environments. The report details the artifacts, setup procedures, and analysis scripts used in the original study, enabling replication of the experiments. The replication confirms the potential of LLMs in assumed-breach simulations.
LLMs might be surprisingly capable penetration testers for enterprise networks, and this report provides the recipe to reproduce the original findings.
This is the Replicated Computational Results (RCR) Report for the paper ``Can LLMs Hack Enterprise Networks?"The paper empirically investigates the efficacy and effectiveness of different LLMs for penetration-testing enterprise networks, i.e., Microsoft Active Directory Assumed-Breach Simulations. This RCR report describes the artifacts used in the paper, how to create an evaluation setup, and highlights the analysis scripts provided within our prototype.