Last updated: 2026-03-05 05:01 UTC
All documents
Number of pages: 158
| Author(s) | Title | Year | Publication | Keywords | ||
|---|---|---|---|---|---|---|
| Woojin Jeon, Donghyun Yu, Ruei-Hau Hsu, Jemin Lee | Secure Data Sharing Framework with Fine-grained Access Control and Privacy Protection for IoT Data Marketplace | 2026 | Early Access | Internet of Things Encryption Access control Data privacy Protocols Authentication Protection Vectors Scalability Privacy IoT data marketplace fine-grained access control attributes privacy outsourcing encryption match test | The proliferation of IoT devices has led to an exponential increase in data generation, creating new opportunities for data marketplaces. However, due to the security and privacy issues arising from the sensitive nature of IoT data, as well as the need for efficient management of vast amounts of IoT data, a robust solution is necessary. Therefore, this paper proposes a secure data sharing framework with fine-grained access control and privacy protection for the internet of things (IoT) data marketplace. For fine-grained access control of the data in the proposed protocol, we develop the hidden attributes and encryption outsourced key-policy attribute-based encryption (HAEO-KP-ABE) that outsources high-complex operations to peripheral devices with high capability to reduce the computation burden of IoT device. It achieves data privacy by hiding attributes in the ciphertext and by preventing entities that do not hold the data consumer’s secret key material (including SA/CS) from running the match test on stored ciphertexts before decryption. It also has an efficient match test algorithm which can verify that the hidden attributes of the ciphertext match the access policy of the data consumer’s private key without revealing those attributes. We demonstrate the proposed protocol satisfies the security features required for the data sharing process in an IoT data marketplace environment. Furthermore, we evaluate the execution time of the proposed protocol according to the number of attributes and show the practicality and efficiency of the proposed protocol compared to the related works. | 10.1109/TNSM.2026.3670207 |
| Jing Zhang, Chao Luo, Rui Shao | MTG-GAN: A Masked Temporal Graph Generative Adversarial Network for Cross-Domain System Log Anomaly Detection | 2026 | Early Access | Anomaly detection Adaptation models Generative adversarial networks Feature extraction Data models Load modeling Accuracy Robustness Contrastive learning Chaos Log Anomaly Detection Generative Adversarial Networks (GANs) Temporal Data Analysis | Anomaly detection of system logs is crucial for the service management of large-scale information systems. Nowadays, log anomaly detection faces two main challenges: 1) capturing evolving temporal dependencies between log events to adaptively tackle with emerging anomaly patterns, 2) and maintaining high detection capabilities across varies data distributions. Existing methods rely heavily on domain-specific data features, making it challenging to handle the heterogeneity and temporal dynamics of log data. This limitation restricts the deployment of anomaly detection systems in practical environments. In this article, a novel framework, Masked Temporal Graph Generative Adversarial Network (MTG-GAN), is proposed for both conventional and cross-domain log anomaly detection. The model enhances the detection capability for emerging abnormal patterns in system log data by introducing an adaptive masking mechanism that combines generative adversarial networks with graph contrastive learning. Additionally, MTG-GAN reduces dependency on specific data distribution and improves model generalization by using diffused graph adjacency information deriving from temporal relevance of event sequence, which can be conducive to improve cross-domain detection performance. Experimental results demonstrate that MTG-GAN outperforms existing methods on multiple real-world datasets in both conventional and cross-domain log anomaly detection. | 10.1109/TNSM.2026.3654642 |
| Deemah H. Tashman, Soumaya Cherkaoui | Trustworthy AI-Driven Dynamic Hybrid RIS: Joint Optimization and Reward Poisoning-Resilient Control in Cognitive MISO Networks | 2026 | Early Access | Reconfigurable intelligent surfaces Reliability Optimization Security MISO Array signal processing Vectors Satellites Reflection Interference Beamforming cascaded channels cognitive radio networks deep reinforcement learning dynamic hybrid reconfigurable intelligent surfaces energy harvesting poisoning attacks | Cognitive radio networks (CRNs) are a key mechanism for alleviating spectrum scarcity by enabling secondary users (SUs) to opportunistically access licensed frequency bands without harmful interference to primary users (PUs). To address unreliable direct SU links and energy constraints common in next-generation wireless networks, this work introduces an adaptive, energy-aware hybrid reconfigurable intelligent surface (RIS) for underlay multiple-input single-output (MISO) CRNs. Distinct from prior approaches relying on static RIS architectures, our proposed RIS dynamically alternates between passive and active operation modes in real time according to harvested energy availability. We also model our scenario under practical hardware impairments and cascaded fading channels. We formulate and solve a joint transmit beamforming and RIS phase optimization problem via the soft actor-critic (SAC) deep reinforcement learning (DRL) method, leveraging its robustness in continuous and highly dynamic environments. Notably, we conduct the first systematic study of reward poisoning attacks on DRL agents in RIS-enhanced CRNs, and propose a lightweight, real-time defense based on reward clipping and statistical anomaly filtering. Numerical results demonstrate that the SAC-based approach consistently outperforms established DRL base-lines, and that the dynamic hybrid RIS strikes a superior trade-off between throughput and energy consumption compared to fully passive and fully active alternatives. We further show the effectiveness of our defense in maintaining SU performance even under adversarial conditions. Our results advance the practical and secure deployment of RIS-assisted CRNs, and highlight crucial design insights for energy-constrained wireless systems. | 10.1109/TNSM.2026.3660728 |
| Ghofran Khalaf, May Itani, Sanaa Sharafeddine | A UAV-Aided Digital Twin Framework for IoT Networks with High Accuracy and Synchronization | 2026 | Early Access | Digital Twin (DT) technology has emerged as a promising link between the physical and virtual worlds, enabling simulation, prediction, and real-time performance optimization in different domains. In this work we develop a high-fidelity digital twin framework, focusing on synchronization and accuracy between physical and digital systems to enhance data-driven decision making. To achieve this, we deploy several stationary UAVs in optimized locations to collect data from IoT devices, which were used to monitor multiple physical entities and perform computations to evaluate their status. We formulate a mixed-integer non-convex program to maximize the total amount of data collected from all IoT devices while ensuring a constrained age of digital twin threshold and solve it using successive convex approximation (SCA). To cope with realistic scenarios involving unpredictable environments and large network sizes, we model our problem as a Markov Decision Process (MDP), and propose a deep reinforcement learning-based approach using a Twin Delayed Deep Deterministic Policy Gradient (TD3) to optimize the unmanned aerial vehicle positions and the sum rate. Finally, we present different simulation results of the SCA and TD3 based solutions together with two baseline approaches and evaluated the sum rate in terms of IoT device count, AoDT threshold, task arrival rate and UAVs’ computational capacity. In all simulation results, the proposed TD3-based approach consistently proved to be superior as compared to the baseline solutions. | 10.1109/TNSM.2026.3670040 | |
| Honghao Gao, Qionghuizi Ran, Ye Wang, Yueshen Xu | BiTrustChain: A Dual-Blockchain Empowered Dynamic Vehicle Trust Management for Malicious Detection in IoV | 2026 | Early Access | The rapid development of the Internet of Vehicles (IoV) has accelerated technological progress, but several critical security challenges remain, especially in the context of vehicle trust management. Two representative issues are malicious nodes and unreliable information transmission. To address these problems, we propose BiTrustChain, a dual-layer blockchain framework designed to enhance security and trust management in IoV environments. First, it consists of two innovative data chains: a Behavior Data Chain (BDC) and a Reputation Evaluation Chain (REC). The BDC records vehicle interaction data, whereas the REC stores and updates the trust values in real time. Second, within this framework, we develop a Multifactor Bayesian Reputation (MFBR) model that enables quantitative evaluation of node trustworthiness. It integrates a time-decay function and a penalty mechanism to regulate reputation evolution. The trust values decrease after malicious behaviors and recover through continuous normal interactions. In addition, we propose a dynamic local whitelist for indirect reputation evaluation. It filters out untrustworthy nodes and ensures that only reliable nodes remain. The filtered indirect trust is then combined with direct trust to produce a comprehensive reputation score. Third, we design a new set of event-driven smart contracts to synchronize the BDC and REC in real time and ensure secure and efficient data exchange. Finally, we performed experiments on the evaluation platform SUMO/NS-3, and the results show that our method identifies malicious nodes with higher accuracy. In particular, the framework achieves 1.5× higher throughput and reduces latency by 40% compared to the baseline single-chain system. The framework also enhances interaction data integrity and improves robustness against adversarial reputation manipulation. | 10.1109/TNSM.2026.3670385 | |
| Muhammad Fahimullah, Michel Kieffer, Sylvaine Kerboeuf, Shohreh Ahvar, Maria Trocan | Decentralized Coalition Formation of Infrastructure Providers for Resource Provisioning in Coverage Constrained Virtualized Mobile Networks | 2026 | Early Access | Indium phosphide III-V semiconductor materials Resource management Games Costs Wireless communication Quality of service Collaboration Protocols Performance evaluation Resource provisioning wireless virtualized networks coverage integer linear programming coalition formation hedonic approach | The concept of wireless virtualized networks enables Mobile Virtual Network Operators (MVNOs) to utilize resources made available by multiple Infrastructure Providers (InPs) to set up a service. Nevertheless, existing centralized resource provisioning approaches fail to address such a scenario due to conflicting objectives among InPs and their reluctance to share private information. This paper addresses the problem of resource provisioning from several InPs for services with geographic coverage constraints. When complete information is available, an Integer Linear Program (ILP) formulation is provided, along with a greedy solution. An alternative coalition formation approach is then proposed to build coalitions of InPs that satisfy the constraints imposed by an MVNO, while requiring only limited information sharing. The proposed solution adopts a hedonic game-theoretic approach to coalition formation. For each InP, the decision to join or leave a coalition is made in a decentralized manner, relying on the satisfaction of service requirements and on individual profit. Simulation results demonstrate the applicability and performance of the proposed solution. | 10.1109/TNSM.2026.3663437 |
| Jing Huang, Yabo Wang, Honggui Han | SCFusionLocator: A Statement-Level Smart Contract Vulnerability Localization Framework Based on Code Slicing and Multi-Modal Feature Fusion | 2026 | Early Access | Smart contracts Feature extraction Location awareness Codes Blockchains Source coding Fuzzing Security Noise Formal verification Smart Contract Vulnerability Detection Statement-level Localization Code Slicing Feature Fusion | Smart contract vulnerabilities have led to over $20 billion in losses, but existing methods suffer from coarse-grained detection, two-stage “detection-then-localization” pipelines, and insufficient feature extraction. This paper proposes SCFusionLocator, a statement-level vulnerability localization framework for smart contracts. It adopts a novel code-slicing mechanism (via function call graphs and data-flow graphs) to decompose contracts into single-function subcontracts and filter low-saliency statements, paired with source code normalization to reduce noise. A dual-branch architecture captures complementary features: the code-sequence branch uses GraphCodeBERT (with data-flow-aware masking) for semantic extraction, while the graph branch fuses call/control-flow/data-flow graphs into a heterogeneous graph and applies HGAT for structural modeling. SCFusionLocator enables end-to-end statement-level localization by framing tasks as statement classification.We release BJUT_SC02, a large dataset of over 240,000 contracts with line-level labels for 58 vulnerability types. Experiments on BJUT_SC02, SCD, and MANDO datasets show SCFusionLocator outperforms 8 conventional tools and nearly 20 ML baselines, achieving over 90% average F1 at the statement level, with better generalization to similar unknown vulnerabilities, and remains competitive in contract-level detection. | 10.1109/TNSM.2026.3664599 |
| Jiazhong Lu, Jimin Peng, Jian Shu, Jiali Yin, Xiaolei Liu | Adversarial Sample Based on Structured Fusion Noise for Botnet Detection in Industrial Control Systems | 2026 | Early Access | Botnet Industrial control Feature extraction Intrusion detection Integrated circuit modeling Time-domain analysis Internet of Things Frequency-domain analysis Biological system modeling Training Adversarial sample botnet industrial control system fusion noise | The industrial control system’s artificial intelligence-based botnet intrusion detection system has a high detection performance and efficiency in an environment without interference. However, these systems are not immune to evasion through adversarial samples. In this study, we introduce a feature extraction technique tailored for ICS botnet detection. This approach classifies traffic packets based on network traffic attributes and ICS-specific identification codes, encompassing the statuses of ICS devices, enhancing detection precision. Meanwhile, this strategy addresses challenges in ICS data collection and bolsters experimental efficacy. To build a comprehensive botnet intrusion dataset within an ICS, we concurrently utilized existing ICS devices to collect both standard ICS and botnet traffic. Additionally, we present an innovative adversarial sample generation method for botnet detection models, integrating both time-domain and frequency-domain noise. Testing under three real-world ICS attack scenarios revealed our technique can markedly degrade the classification performance of eight leading AI-based detection models, emphasizing its potential for evading AI-based ICS intrusion detectors. | 10.1109/TNSM.2026.3665504 |
| Tuan-Vu Truong, Van-Dinh Nguyen, Quang-Trung Luu, Phi-Son Vo, Xuan-Phu Nguyen, Fatemeh Kavehmadavani, Symeon Chatzinotas | Accelerating Resource Allocation in Open RAN Slicing via Deep Reinforcement Learning | 2026 | Early Access | Resource management Open RAN Ultra reliable low latency communication Real-time systems Computational modeling Optimization Deep reinforcement learning Costs Complexity theory Bandwidth Open radio access network network slicing virtual network function resource allocation deep reinforcement learning successive convex approximation | The transition to beyond-fifth-generation (B5G) wireless systems has revolutionized cellular networks, driving unprecedented demand for high-bandwidth, ultra low-latency, and massive connectivity services. The open radio access network (Open RAN) and network slicing provide B5G with greater flexibility and efficiency by enabling tailored virtual networks on shared infrastructure. However, managing resource allocation in these frameworks has become increasingly complex. This paper addresses the challenge of optimizing resource allocation across virtual network functions (VNFs) and network slices, aiming to maximize the total reward for admitted slices while minimizing associated costs. By adhering to the Open RAN architecture, we decompose the formulated problem into two subproblems solved at different timescales. Initially, the successive convex approximation (SCA) method is employed to achieve at least a locally optimal solution. To handle the high complexity of binary variables and adapt to time-varying network conditions, traffic patterns, and service demands, we propose a deep reinforcement learning (DRL) approach for real-time and autonomous optimization of resource allocation. Extensive simulations demonstrate that the DRL framework quickly adapts to evolving network environments, significantly improving slicing performance. The results highlight DRL’s potential to enhance resource allocation in future wireless networks, paving the way for smarter, self-optimizing systems capable of meeting the diverse requirements of modern communication services. | 10.1109/TNSM.2026.3665553 |
| Adel Chehade, Edoardo Ragusa, Paolo Gastaldo, Rodolfo Zunino | Hardware-Aware Neural Architecture Search for Encrypted Traffic Classification on Resource-Constrained Devices | 2026 | Early Access | Accuracy Computational modeling Cryptography Feature extraction Hardware Convolutional neural networks Artificial neural networks Real-time systems Long short term memory Internet of Things Deep neural networks encrypted traffic classification hardware-aware neural architecture search Internet of Things resource-constrained devices | This paper presents a hardware-efficient deep neural network (DNN), optimized through hardware-aware neural architecture search (HW-NAS); the DNN supports the classification of session-level encrypted traffic on resource-constrained Internet of Things (IoT) and edge devices. Thanks to HW-NAS, a 1D convolutional neural network (CNN) is tailored on the ISCX VPN-nonVPN dataset to meet strict memory and computational limits while achieving robust performance. The optimized model attains an accuracy of 96.60% with just 88.26K parameters, 10.08M floating-point operations (FLOPs), and a maximum tensor size of 20.12K. Compared to state-of-the-art (SOTA) models, it achieves reductions of up to 444-fold, 312-fold, and 15-fold in these metrics, respectively, significantly minimizing memory footprint and runtime requirements. The model also demonstrates versatility, achieving up to 99.86% across multiple VPN and traffic classification (TC) tasks; it further generalizes to external benchmarks with up to 99.98% accuracy on USTC-TFC and QUIC NetFlow. In addition, an in-depth approach to header-level preprocessing strategies confirms that the optimized model can provide notable performance across a wide range of configurations, even in scenarios with stricter privacy considerations. Likewise, a reduction in the length of sessions of up to 75% yields significant improvements in efficiency, while maintaining high accuracy with only a negligible drop of 1-2%. However, the importance of careful preprocessing and session length selection in the classification of raw traffic data is still present, as improper settings or aggressive reductions can bring about a 7% reduction in overall accuracy. The quantized architecture was deployed on STM32 microcontrollers and evaluated across input sizes; results confirm that the efficiency gains from shorter sessions translate to practical, low-latency embedded inference. These findings demonstrate the method’s practicality for encrypted traffic analysis in constrained IoT networks. | 10.1109/TNSM.2026.3666676 |
| Pengcheng Guo, Zhi Lin, Haotong Cao, Yifu Sun, Kuljeet Kaur, Sherif Moussa | GAN-Empowered Parasitic Covert Communication: Data Privacy in Next-Generation Networks | 2026 | Early Access | Interference Generators Generative adversarial networks Blind source separation Electronic mail Training Receivers Noise Image reconstruction Hardware Artificial intelligence blind source separation covert communication generative adversarial network | The widespread integration of artificial intelligence (AI) in next-generation communication networks poses a serious threat to data privacy while achieving advanced signal processing. Eavesdroppers can use AI-based analysis to detect and reconstruct transmitted signals, leading to serious leakage of confidential information. In order to protect data privacy at the physical layer, we redefine covert communication as an active data protection mechanism. We propose a new parasitic covert communication framework in which communication signals are embedded into dynamically generated interference by generative adversarial networks (GANs). This method is implemented by our CDGUBSS (complex double generator unsupervised blind source separation) system. The system is explicitly designed to prevent unauthorized AI-based strategies from analyzing and compromising signals. For the intended recipient, the pretrained generator acts as a trusted key and can perfectly recover the original data. Extensive experiments have shown that our framework achieves powerful covert communication, and more importantly, it provides strong defense against data reconstruction attacks, ensuring excellent data privacy in next-generation wireless systems. | 10.1109/TNSM.2026.3666669 |
| Fernando Martinez-Lopez, Lesther Santana, Mohamed Rahouti, Abdellah Chehri, Shawqi Al-Maliki, Gwanggil Jeon | Learning in Multiple Spaces: Prototypical Few-Shot Learning with Metric Fusion for Next-Generation Network Security | 2026 | Early Access | Measurement Prototypes Extraterrestrial measurements Training Chebyshev approximation Metalearning Scalability Next generation networking Learning (artificial intelligence) Data models Few-Shot Learning Network Intrusion Detection Metric-Based Learning Multi-Space Prototypical Learning | As next-generation communication networks increasingly rely on AI-driven automation, ensuring robust and secure intrusion detection becomes critical, especially under limited labeled data. In this context, we introduce Multi-Space Prototypical Learning (MSPL), a few-shot intrusion detection framework that improves prototype-based classification by fusing complementary metric-induced spaces (Euclidean, Cosine, Chebyshev, and Wasserstein) via a constrained weighting mechanism. MSPL further enhances stability through Polyak-averaged prototype generation and balanced episodic training to mitigate class imbalance across diverse attack categories. In a few-shot setting with as few as 200 training samples, MSPL consistently outperforms single-metric baselines across three benchmarks: on CICEVSE Network2024, AUPRC improves from 0.3719 to 0.7324 and F1 increases from 0.4194 to 0.8502; on CICIDS2017, AUPRC improves from 0.4319 to 0.4799; and on CICIoV2024, AUPRC improves from 0.5881 to 0.6144. These results demonstrate that multi-space metric fusion yields more discriminative and robust representations for detecting rare and emerging attacks in intelligent network environments. | 10.1109/TNSM.2026.3665647 |
| Devanshu Anand, Gabriel-Miro Muntean | Mitigating Interferences in 5G O-RAN HetNets through ML-driven xAPP to Enhance Users’ QoS | 2026 | Early Access | Interference 5G mobile communication Quality of service Throughput Base stations User experience Resource management Prevention and mitigation Spectral efficiency Signal to noise ratio HetNets Interference Machine Learning | In today’s rapidly evolving telecommunications landscape, the demand for seamless connectivity and top-tier network performance has reached unprecedented levels. Traditional cellular systems, while valiant in their service, now struggle under the weight of spiraling data demands, spectrum scarcity, and power inefficiency. The era of ultra-dense mobile networks, with Heterogeneous Networks (HetNets) at the forefront, ushers in improved throughput, spectral efficiency, and energy management. To tackle these challenges, this paper introduces MLCIMO (Machine Learning-enhanced Classification for Interference Management and Offloading) into 5G HetNets. MLCIMO employs a multi-binary classification strategy to categorize users based on interference types and levels. It also introduces an offloading scheme tailored to user service priorities, enhancing the user quality of experience, while conserving energy. It seamlessly aligns with the evolving needs of the HetNets, addressing some of the issues introduced by small cell deployments. Simulation results show that MLCIMO achieves the highest throughput, shortest delay, and lowest packet loss ratio in comparison with alternative approaches. In a comprehensive analysis, the varying degrees of interference encountered by users under different schemes are unveiled, further establishing MLCIMO’s distinguished position in mitigating interference. | 10.1109/TNSM.2026.3667462 |
| Yanxu Lin, Renzhong Zhong, Jingnan Xie, Yueting Zhu, Byung-Gyu Kim, Saru Kumari, Shakila Basheer, Fatimah Alhayan | Privacy-Preserving Digital Publishing Framework for Next-Generation Communication Networks: A Verifiable Homomorphic Federated Learning Approach | 2026 | Early Access | Electronic publishing Federated learning Cryptography Communication networks Homomorphic encryption Next generation networking Complexity theory Protocols Privacy Optimization Digital publishing federated learning next-generation communication networks Chinese remainder theorem | Next-generation communication networks are revolutionizing digital publishing through intelligent content distribution and collaborative optimization capabilities. However, existing federated learning approaches face fundamental limitations, including trusted third-party dependencies, excessive communication overhead, and vulnerability to collusion attacks between servers and participants. This paper introduces VHFL-DP, a verifiable homomorphic federated learning framework for digital publishing environments operating within 6G network infrastructures. The framework addresses critical privacy and scalability challenges through four key innovations: a distributed cryptographic key generation protocol that eliminates trusted third-party requirements, Chinese remainder theorem-based dimensionality reduction, auxiliary validation nodes that enable independent verification with constant-time complexity, and an intelligent incentive mechanism that rewards digital publishing platforms based on objective contribution quality metrics. Experimental evaluation on MNIST and Amazon reviews datasets across six baseline methods demonstrates that VHFL-DP achieves superior performance with accuracy improvements of 4.2% over the best baseline method. The framework maintains constant verification time ranging from 2.73 to 2.91 seconds regardless of platform count, increasing from ten to fifty, or dropout rates reaching thirty percent. Security evaluation reveals strong resilience with only 2.4 percentage point accuracy degradation under poisoning attacks compared to 6.7-7.0 points for baseline method, inference attack success near random guessing at 51.3%, and 92.4% successful aggregation under Byzantine adversaries. | 10.1109/TNSM.2026.3667167 |
| Imran Ahmed, Bijoy Chand Chatterjee, Eiji Oki | AnalyticalSAR: Analytical Modeling for Blocking Performance with Security-Aware Reconfiguration in Spectrally-Spatially Elastic Optical Networks | 2026 | Early Access | Analytical models Security Resource management Computational modeling Iterative methods Spread spectrum communication Crosstalk Monte Carlo methods Elastic optical networks System performance Elastic optical network spectrum reconfiguration Markov chain blocking analysis security | Spectrally-spatially elastic optical networks (SS-EONs) enable ultra-high data rate transmission, which raises critical concerns about physical-layer security vulnerabilities, particularly against eavesdropping and unauthorized network access. Dynamic resource allocation through lightpath reconfiguration presents an effective approach to improving security by reducing request exposure windows. However, implementing secure reconfiguration in SS-EONs introduces significant complexity due to the complex relationships between spectral allocation and spatial resource management constraints. This paper proposes an analytical model for blocking performance with security-aware reconfiguration (AnalyticalSAR) in SS-EONs based on continuous-time Markov chain analysis to tackle these security challenges. The AnalyticalSAR provides analytical assessment of how spectrum reconfiguration affects both network security and blocking performance while accounting for inter-core and intermode crosstalks. The model generates all viable states accounting for spectrum reconfiguration processes and their corresponding transitions to establish state probabilities. Our analysis incorporates two distinct spectrum allocation policies: core-modespectrum random fit (CMS-RF) and core-mode-spectrum first fit (CMS-FF) policies. Our model supports diverse traffic scenarios, including single-class requests with uniform slot requirements and multi-class requests including heterogeneous bandwidth demands. To overcome computational complexity limitations in single-hop analyses, we develop an heuristic iterative approach and subsequently extend this approach to multi-hop network scenarios. We compare AnalyticalSAR, the heuristic iterative approach, and Monte Carlo simulation studies for a single-hop link. Analytical evaluation reveals that random spectrum reconfiguration substantially improves security metrics while introducing minimal blocking probability increases. These performance trade-offs depend critically on number of spectrum reconfiguration, link and network load conditions, and available link capacity. The results validate that AnalyticalSAR achieves an effective compromise between security enhancement and operational performance, providing a practical framework for secure resource management in SS-EON deployments. | 10.1109/TNSM.2026.3669870 |
| Wenxuan Li, Yu Yao, Ni Zhang, Chuan Sheng, Ziyong Ran, Wei Yang | IMADP: Imputation-based Anomaly Detection in SCADA Systems via Adversarial Diffusion Process | 2026 | Early Access | Anomaly detection Adaptation models Data models Training SCADA systems Transformers Diffusion models Monitoring Robustness Roads SCADA Multi-sensor Anomaly Detection Imputation-based Conditional Diffusion | As the confrontation of the industrial cybersecurity upgrades, multi-dimensional variables measured by the SCADA multi-sensor are critical for assessing security risks in industrial field devices. While Deep Learning (DL) methods based on generative models have demonstrated effectiveness, the impact of missing features in samples and temporal window size on modeling and detection processes has been consistently overlooked. To address these challenges, this work proposes an IMADP framework that integratively solves two tasks of missingness patching and anomaly detection. Firstly, the Window-based Adaptive Selection Strategy (WASS) is also designed to intelligently window samples, reducing reliance on prior settings. Secondly, an imputer is constructed under WASS to restore sample integrity, which is implemented by a fully-connected network centered on Neural Controlled Differential Equations (NCDEs). Thirdly, a adversarial diffusion detection model with the variant Transformer as the inverse solver is proposed. Additionally, the Adaptive Dynamic Mask Mechanism (ADMM) is built upon to bolster the model’s comprehension of inter-dependencies between time and sensor nodes. Simultaneously, adversarial training is introduced to optimize training and detection latency caused by the excessive diffusion step size during the native Conditional Diffusion process. The experimental results validate that the proposed framework has the capability to build detectors using missing training samples, and its overall detection performance, tested across six datasets, is superior to existing methods. | 10.1109/TNSM.2026.3670062 |
| Masaki Oda, Akio Kawabata, Eiji Oki | Consistency-Aware Multi-Server Network Design for Delay-Sensitive Applications under Server Failures | 2026 | Early Access | Servers Delays Resource management Approximation algorithms Optimization Numerical models Computational modeling Performance analysis Data models Software algorithms Server allocation data consistency preventive start-time optimization server failure approximation algorithm | Real-time applications require low latency and event order guarantees. Distributed server processing is effective for this purpose, and data consistency between servers is crucial. Although existing models in previous work handle data consistency, they do not address server failures. This paper proposes a server allocation model for a consistency-aware multi-server network for delay-sensitive applications with preventive start-time optimization (PSO) under single-server failures. The proposed model considers data consistency between servers and handles single-server failures with PSO. PSO determines the assignment to minimize the worst-case delay over all possible failure scenarios while avoiding service disruption for users connected to non-failed servers. We formulate the proposed model as an integer linear programming (ILP) problem. The decision version of the server allocation problem is proven to be NP-complete, and it becomes difficult to solve in a practical time when the problem size is large. We develop two polynomial-time approximation algorithms with theoretical performance analysis. Numerical results show that the proposed model outperforms start-time optimization in terms of the largest total delay and run-time optimization in terms of avoiding instability. The results also show that the faster of our two developed algorithms achieves a speedup ranging from 2.26×103 to 4.37×106 times compared to the ILP approach, while the maximum delay is, on average, only 1.029 times the optimal value. The results indicate that the speedup effect becomes more significant as the number of users and servers increases. | 10.1109/TNSM.2026.3669840 |
| Mengmeng Sun, Zeyu Tan, Dianlong You, Zhen Chen | PCNet: A Personalized Complementary Network via Tensor Decomposition for Service Recommendation | 2026 | Early Access | Mashups Tensors Collaborative filtering Web sites Video on demand Artificial intelligence Semantics Reviews Cloud computing Software development management Web service Complementarity Tensor Decomposition Personalized Recommendation Mashup | Web services are widely utilized across domains such as cloud computing, mobile networks, and Web applications. Due to their single-function nature, these services are often composed into Mashups to achieve more comprehensive functionality. However, the rapid growth in the number and variety of Web services has made it increasingly difficult to identify suitable services for Mashup development. Web service recommendation systems have emerged as a solution to this service overload, supporting innovative practices within the service-oriented development paradigm. While existing methods emphasize recommendation accuracy and relevance, few approaches simultaneously consider the personalized requirements of the Mashup side and the complementary relationships on the service side, both of which are essential for reconstructing the Web service ecosystem’s value chain. To address this gap, we propose PCNet, a Personalized Complementary Network for service recommendation based on tensor decomposition. We conceptualize the interaction dynamics between Mashups and services, as well as coinvocation patterns among services, using a three-dimensional tensor. The RESCAL tensor decomposition technique is then applied to jointly learn these relationships and uncover personalized complementary relationships among services. In addition, we develop a complementary perception module that uses an attention mechanism to dynamically model a Mashup’s focus on different complementary relationships, extending them to higher orders. Experimental results on real-world Web service datasets demonstrate that PCNet significantly outperforms state-of-the-art baselines. The implementation of PCNet is publicly available at: https://github.com/MengMeng3399/PCNet. | 10.1109/TNSM.2026.3669613 |
| Vaishnavi Kasuluru, Luis Blanco, Cristian J. Vaca-Rubio, Engin Zeydan, Albert Bel | AI-Empowered Multivariate Probabilistic Forecasting: A Key Enabler for Sustainability in Open RAN | 2026 | Early Access | Open RAN Forecasting Probabilistic logic Switches Resource management Telecommunication traffic Sustainable development Predictive models Power demand Energy consumption Sustainability Open RAN 6G Probabilistic Forecasting Network Analytics Artificial Intelligence | This paper explores the role of multivariate probabilistic forecasting in improving O-RAN operations, focusing on network sustainability aspects. A comprehensive analysis of its potential benefits and challenges, as well as its integration into the O-RAN architecture are described. The paper first presents an overview of the O-RAN architecture and components, followed by an examination of power consumption models relevant to O-RAN deployments and the challenges associated with traditional deterministic models in resource allocation. We then examine the performance of several state-of-the-art probabilistic multivariate forecasting techniques namely, Gaussian Process Vector Autoregression (GPVAR), Temporal Fusion Transformer (TFT) and non-probabilistic multivariate technique namely, Multivariate Long-Short Term Memory (LSTM) and explain their implementation details and provide their evaluations. The simulation results show the effectiveness of these techniques in predicting Physical Resource Block (PRB) utilization and optimizing resource allocation. In particular, significant energy savings – around 20-30%– are achieved, depending on the percentile of the used probabilistic forecasting techniques. The benefits of considering probabilistic forecasting techniques compared to multi-variate LSTM are also analyzed. Our results emphasize the potential of probabilistic forecasting to improve energy efficiency and sustainability in O-RAN operations. | 10.1109/TNSM.2026.3669847 |
| Behnam Ojaghi, Ricard Vilalta, Raül Muñoz | IBNS: Optimizing Intent-Based 6G Network Slicing for Conflict Detection and Mitigation | 2026 | Early Access | Quality of service 6G mobile communication Complexity theory Service level agreements Optimization 5G mobile communication Network slicing Ultra reliable low latency communication Throughput Monitoring 6G Intent-Based Network Management Network Slicing QoS Intent Closed-loop Handling SLA Intent Conflict Mitigation | The Sixth-Generation (6G) mobile networks aim to automate network resource allocation and support both new and existing vertical services, each with diverse Quality of Service (QoS) intent requirements. Digital Service Providers (DSPs) must consider specific intent expectations, and targets set by different services, and re-configure and prioritize the most critical intents when resources are insufficient. This paper presents an optimization model for a flexible network paradigm using an Intent-Based Network Slicing (IBNS) framework that can manage the complexity of QoS intents and identify slice intent conflicts through closed-loop evaluation and monitoring. It dynamically adjusts the slice configurations to handle and mitigate detected conflicts by executing the agreed-upon Service Level Agreement (SLA) objectives (%) for higher-priority slices to ensure that critical intents are addressed. According to the results, this approach successfully meets the SLA target we set for slice but it negatively impacts the performance of other slices and degrades their slice capacity. | 10.1109/TNSM.2026.3668027 |