Logo Lanfrica
  • Home
  • Atlas
  • Insights
  • Docs
  • Sign in

© 2026 Lanfrica. All rights reserved. All copyrights of the resources shown on the Lanfrica website belong to the original copyright holders, unless explicitly stated otherwise.

MALF: A Multi-Agent LLM Framework for Intelligent Fuzzing of Industrial Control Protocols

Domain:

peace and security

Record type:

papersoftware
Creator:
NinZonHe,
Host:avatar
Industrial control systems (ICS) are vital to modern infrastructure but increasingly vulnerable to cybersecurity threats, particularly through weaknesses in their communication protocols. This paper presents MALF (Multi-Agent LLM Fuzzing Framework), an advanced fuzzing solution that integrates large language models (LLMs) with multi-agent coordination to identify vulnerabilities in industrial control protocols (ICPs). By leveraging Retrieval-Augmented Generation (RAG) for domain-specific knowledge and QLoRA fine-tuning for protocol-aware input generation, MALF enhances fuzz testing precision and adaptability. The multi-agent framework optimizes seed generation, mutation strategies, and feedback-driven refinement, leading to improved vulnerability discovery. Experiments on protocols like Modbus/TCP, S7Comm, and Ethernet/IP demonstrate that MALF surpasses traditional methods, achieving a test case pass rate (TCPR) of 88-92% and generating more exception triggers (ETN). MALF also maintains over 90% seed coverage and Shannon entropy values between 4.2 and 4.6 bits, ensuring diverse, protocol-compliant mutations. Deployed in a real-world Industrial Attack-Defense Range for power plants, MALF identified critical vulnerabilities, including three zero-day flaws, one confirmed and registered by CNVD. These results validate MALF's effectiveness in real-world fuzzing applications. This research highlights the transformative potential of multi-agent LLMs in ICS cybersecurity, offering a scalable, automated framework that sets a new standard for vulnerability discovery and strengthens critical infrastructure security against emerging threats.

Visit

arxiv.org

Tags

Cryptography and Security

Similar

A multi-agent system framework for real-time self-diagnostic condition monitoring of induction furnace equipment in developing industrial economies[P03] Cultural Consensus Protocols for Autonomous AI Agent Systems: A Framework for Culturally-Informed Collective Decision-MakingMulti-Agent Interactive Question Generation Framework for Long Document UnderstandingAdaptive Traffic Signal Control Using Multi-Agent Reinforcement Learning: A Comparison of Control StrategiesLeJEPA + I-JEPA: A World-Model-Grounded Multi-Agent Framework for Medical AGIIntelligent Deep Learning Framework for Cervical Cancer Detection and Multi-Class Classification

A multi-agent system framework for real-time self-diagnostic condition monitoring of induction furnace equipment in developing industrial economies

Unplanned equipment failures in developing industrial economies result in substantial production los

[P03] Cultural Consensus Protocols for Autonomous AI Agent Systems: A Framework for Culturally-Informed Collective Decision-Making

Multi-agent artificial intelligence systems require sophisticated mechanisms for collective

Multi-Agent Interactive Question Generation Framework for Long Document Understanding

Document Understanding (DU) in long-contextual scenarios with complex layouts remains a significant

Adaptive Traffic Signal Control Using Multi-Agent Reinforcement Learning: A Comparison of Control Strategies

Urban traffic congestion remains a persistent challenge for conventional fixed-time signal control,

LeJEPA + I-JEPA: A World-Model-Grounded Multi-Agent Framework for Medical AGI

Executive Summary: LeJEPA + I-JEPA Medical AGI LEJEPA_IJEPA_MEDICAL_AGI is an open-source, multi-ag

Intelligent Deep Learning Framework for Cervical Cancer Detection and Multi-Class Classification

Abstract Cervical cancer represents a significant global health challenge, especia