PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
September 29, 20252 citationsOpen Access

Forewarned is Forearmed: A Survey on Large Language Model-based Agents in Autonomous Cyberattacks

View Full Paper
MXMinrui XuJFJiani FanXHXinyu Huang

Key Points

  • Large language model-based agents have transformed into autonomous cyber entities, capable of executing complex strategies.
  • Cyber threat inflation indicates a significant reduction in attack costs and an increase in the scale of these cyberattacks.
  • Existing defense methods are currently inadequate against the advanced tactics of autonomous cyber attack agents.
  • Future research directions focus on developing more effective defensive strategies for various network systems.

Abstract

With the continuous evolution of Large Language Models (LLMs), LLM-based agents have advanced beyond passive chatbots to become autonomous cyber entities capable of performing complex tasks, including web browsing, malicious code and deceptive content generation, and decision-making. By significantly reducing the time, expertise, and resources, AI-assisted cyberattacks orchestrated by LLM-based agents have led to a phenomenon termed Cyber Threat Inflation, characterized by a significant reduction in attack costs and a tremendous increase in attack scale. To provide actionable defensive insights, in this survey, we focus on the potential cyber threats posed by LLM-based agents across diverse network systems. Firstly, we present the capabilities of LLM-based cyberattack agents, which include executing autonomous attack strategies, comprising scouting, memory, reasoning, and action, and facilitating collaborative operations with other agents or human operators. Building on these capabilities, we examine common cyberattacks initiated by LLM-based agents and compare their effectiveness across different types of networks, including static, mobile, and infrastructure-free paradigms. Moreover, we analyze threat bottlenecks of LLM-based agents across different network infrastructures and review their defense methods. Due to operational imbalances, existing defense methods are inadequate against autonomous cyberattacks. Finally, we outline future research directions and potential defensive strategies for legacy network systems.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Xu et al. (2025) studied this question.

synapsesocial.com/papers/68da58d1c1728099cfd10eb7https://doi.org/10.48550/arxiv.2505.12786
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1Securing LLM-based agents against cyberattacks: a comprehensive survey on attack techniques and defense strategies2026 · 3 citations
  2. 2AutoAttacker: A Large Language Model Guided System to Implement Automatic Cyber-attacks2024 · 15 citations
  3. 3Exploring the Role of Large Language Models in Cybersecurity: A Systematic Survey2025
  4. 4Large Language Models for Cybersecurity Intelligence: A Systematic Review of Emerging Threats, Defensive Capabilities, and Security Evaluation Frameworks2026 · 1 citations
  5. 5Large Language Models in Cybersecurity: A Survey of Applications, Vulnerabilities, and Defense Techniques2025 · 54 citations