Skip to content
#federated learning Open access

DSSN-V4: An Integrated Framework for Unified Security Event Modeling, Risk Assessment, Threat Propagation, and Federated Learning in Heterogeneous Environments

Sep 2026 · Zenodo (CERN European Organization for Nuclear Research)
Advanced Malware Detection Techniques Network Security and Intrusion Detection

Abstract

Modern computing environments integrate Linux servers, Windows workstations, and Android devices, creating fragmented security telemetry that limits the detection of coordinated cross-platform attacks. This paper proposes DSSN-V4, a unified distributed framework for cross-platform threat monitoring and global risk assessment. The framework collects platform-specific events through eBPF on Linux, Event Tracing for Windows (ETW), and Binder IPC monitoring on Android, then transforms them into a Unified Security Event Model. It combines multidimensional local risk, shared global risk, threat-propagation probability, and a federated learning classifier within a single decision score. A reproducible Python-based simulation was conducted using 7,200 training events, 1,800 validation events, and 3,000 test events, including 200 synthetic three-stage Android-Linux-Windows attack campaigns. Experimental results showed that the unified model achieved 96.50% accuracy, 98.11% precision, 91.97% recall, a 94.94% F1-score, and a 0.98% false-positive rate. Compared with a local-risk-only baseline, the proposed framework improved the F1-score by 1.44 percentage points, reduced the false-positive rate by 0.41 percentage points, and increased complete campaign recall from 72.0% to 77.5%. These findings indicate that normalized cross-platform evidence, explicit risk propagation, and federated intelligence can operate as one coherent and auditable security pipeline. However, the evaluation uses synthetic data and does not establish production endpoint performance, privacy guarantees, instrumentation overhead, or blockchain throughput. real-world DSSN-V4 therefore represents a testable proof-of-concept that requires future validation using eBPF, ETW, and Binder telemetry.

View source

Similar papers

#machine learning Review Open access Oct 2014

Software development in startup companies: A systematic mapping study

The results indicate that software engineering work practices are chosen opportunistically, adapted and configured to provide value under the constrains imposed by the startup context.

Nicolò Paternoster, Carmine Giardino, M. Unterkalmsteiner et al. · 394 citations · ⚡54
#machine learning Review Open access Jun 2014

Why Early-Stage Software Startups Fail: A Behavioral Framework

This state-of-practice investigation was performed using a literature review followed by a multiple-case study approach and presents how inconsistency between managerial strategies and execution can lead to failure by means of a behavioral framework.

Carmine Giardino, Xiaofeng Wang, P. Abrahamsson · 175 citations · ⚡19
#machine learning Review Open access Oct 2016

“Failures” to be celebrated: an analysis of major pivots of software startups

This study conducts a case survey study based on the secondary data of the major pivots happened in 49 software startups, and demonstrates that customer need pivot is the most common among all pivot types.

Sohaib Shahid Bajwa, Xiaofeng Wang, Anh Nguyen-Duc et al. · 127 citations · ⚡15
#machine learning Review Open access May 2016

Key Challenges in Software Startups Across Life Cycle Stages

It is found that what perceived as biggest challenges by software startups do vary across different life cycle stages, even though its significance decreases when the learning focuses of the startups move from problem to solution and their products mature.

Xiaofeng Wang, Henry Edison, Sohaib Shahid Bajwa et al. · 62 citations · ⚡6

Related blog posts

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.