Emerging Federated Learning Frameworks Enhance Intrusion Detection Against DDoS Attacks
Article Content
- •SecureTrust-FL achieves 92.91% accuracy in privacy-preserving intrusion detection.
- •FL-TWIN pairs clients with Digital Twins, achieving 99.98% accuracy against DDoS attacks.
- •Both frameworks utilize blockchain for enhanced trust and accountability in collaborative learning.
Recent advancements in intrusion detection systems leverage federated learning frameworks to combat distributed denial-of-service (DDoS) attacks. Two frameworks, SecureTrust-FL and FL-TWIN, were proposed to enhance privacy and security in distributed environments. SecureTrust-FL integrates trust management and differential privacy for effective intrusion detection across heterogeneous datasets, achieving an overall accuracy of 92.91%. Meanwhile, FL-TWIN pairs clients with Digital Twins and employs a four-stage poisoning defense pipeline, achieving peak test accuracies of 99.98% against various attack types. Both frameworks utilize blockchain technology for accountability and transparency in the learning process. These innovations aim to address the increasing complexity of networked environments and the challenges posed by DDoS attacks. The frameworks demonstrate significant improvements in detection performance while preserving data privacy. The research highlights the importance of adaptive learning and robust defense mechanisms in the face of evolving cyber threats.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…