Skip to content
#federated learning Open access

Dataset Integrity, Feature Leakage Discovery, in IoT Intrusion Detection: A Verified, Reproducible Evaluation on IoT-23, ToN-IoT and Edge-IIoTset

Sep 2026 · Zenodo (CERN European Organization for Nuclear Research)
Network Security and Intrusion Detection

Abstract

Machine-learning-based intrusion detection for the Internet of Things is a rapidly growing literature that is nonetheless frequently undermined by two under-examined threats to validity: unverified dataset provenance and undisclosed feature leakage. This paper proposes XAI-FedFog-HybridNet, a federated intrusion-detection architecture for 6G fog-IoT environments that combines a three-branch Bi-LSTM-RNNCNN classifier, differential-privacy-bounded secure aggregation with Byzantine-robust selection, a permissioned blockchain audit layer, and a dual explainability module built on SHAP and Grad-CAM. In this it adopts the operational-transparency reporting discipline established in the network-and-servicemanagement literature - explicit training-time accounting, multi-dataset statistical validation, and deployability-relevant metrics beyond raw accuracy -This paper reports a fully verified, mathematically formalized evaluation of an intrusion-detection pipeline on three independently checked open-source benchmarks - IoT-23, ToN-IoT and Edge-IIoTset. the specified deep hybrid architecture, the study measured binary and multiclass detection accuracy, training/validation convergence, confusion matrices, ROC/AUC, feature importance, correlation structure, oversampling-coefficient sensitivity, training time and statistical significance across all three datasets. We formalize every preprocessing operator mathematically and report binary and multi-class results - accuracy, macro-F1, AUC, Matthews Correlation Coefficient, confusion matrices, ROC curves, feature importance, and ANOVA/t-test statistical validation with Cohen's d - measured directly. Binary test accuracy reached 97.52% (ToN-IoT), 97.41% (Edge-IIoTset) and 88.53% (IoT-23). We discovered and quantified a schema artifact in Edge-IIoTset - MQTT/DNS protocol-presence fields that leak attack-category identity, inflating naive accuracy to a non-generalizable 100.00% until removed. Benchmarked against real baseline classifiers, gradient-boosted tree ensembles outperformed our neuralnetwork framework on every one of six configurations tested. We contend that verified provenance result reporting are themselves scientific contributions this paper is structured to demonstrate.

View source

Similar papers

#machine learning Review Open access Oct 2014

Software development in startup companies: A systematic mapping study

The results indicate that software engineering work practices are chosen opportunistically, adapted and configured to provide value under the constrains imposed by the startup context.

Nicolò Paternoster, Carmine Giardino, M. Unterkalmsteiner et al. · 394 citations · ⚡54
#machine learning Review Open access Jun 2014

Why Early-Stage Software Startups Fail: A Behavioral Framework

This state-of-practice investigation was performed using a literature review followed by a multiple-case study approach and presents how inconsistency between managerial strategies and execution can lead to failure by means of a behavioral framework.

Carmine Giardino, Xiaofeng Wang, P. Abrahamsson · 175 citations · ⚡19
#machine learning Review Open access Oct 2016

“Failures” to be celebrated: an analysis of major pivots of software startups

This study conducts a case survey study based on the secondary data of the major pivots happened in 49 software startups, and demonstrates that customer need pivot is the most common among all pivot types.

Sohaib Shahid Bajwa, Xiaofeng Wang, Anh Nguyen-Duc et al. · 127 citations · ⚡15
#machine learning Review Open access May 2016

Key Challenges in Software Startups Across Life Cycle Stages

It is found that what perceived as biggest challenges by software startups do vary across different life cycle stages, even though its significance decreases when the learning focuses of the startups move from problem to solution and their products mature.

Xiaofeng Wang, Henry Edison, Sohaib Shahid Bajwa et al. · 62 citations · ⚡6

Related blog posts

MIT News · Artificial Intelligence Oct 7, 2026

Discovering the value of humanistic inquiry

Students in MIT’s Concourse program delve deeply into the human condition, debate challenging questions, and learn to develop judgment about issues that can’t be quantified.

Microsoft Research Blog Oct 7, 2026

Agent Lightning v1.0: A 3,500-Line Lightweight Agentic RL Framework for Training Agents with Real Harnesses

Training AI agents with reinforcement learning can be challenging because their tools, context, and decision-making are managed by complex frameworks. Agent Lightning connects existing agents to RL training, making it easier to improve them without rebuilding them. The post Agent Lightning v1.0: A 3,500-Line Lightweight Agentic RL Framework for Training Agents with Real Harnesses appeared first on Microsoft Research.

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.