Sep 2026· Journal of Sensor and Actuator Networks· 0 citations
Adversarial Robustness in Machine LearningPrivacy-Preserving Technologies in Data
Abstract
In the industrial edge-to-cloud continuum, data is often privacy-sensitive and spans multiple organizations that do not fully trust one another, making central aggregation of raw data undesirable and often non-compliant with regulations such as the General Data Protection Regulation (GDPR). Federated Learning (FL) addresses this by sharing model updates rather than raw data, but conventional FL assumes a central coordinator, leaving it exposed to poisoning and inference attacks and to a single point of trust and failure. Decentralized Federated Learning (DFL) couples FL with Distributed Ledger Technologies (DLTs), removing the coordinator and enabling verifiable aggregation in trustless, cross-organizational environments. In this work, we assess the applicability of DFL to on-device spoken-command recognition—a representative edge audio task underpinning voice-driven industrial interfaces—by comparing decentralized and centralized training under idealized and adversarial conditions. Using a Convolutional Neural Network (CNN) replicated across edge nodes, we evaluate resilience to inter-node data imbalance, to poisoning attacks, and to a privacy-preserving noise-injection defense against inference attacks, together with model compression for resource-constrained edge devices. The system pairs this comparison with a validation-based poisoning defense in which each node scores its peers’ updates on its own held-out data, and an update is aggregated only if a majority of nodes report a weighted F1-score above a threshold—requiring neither a shared validation set nor a trusted validator. Our results indicate that the DFL system achieves accuracy comparable to centralized baselines in most scenarios (weighted F1-score 0.762 across nine nodes, against 0.896 centralized), and that a cross-node validation mechanism reliably excludes poisoned updates as long as fewer than half of the nodes are compromised (within 3.54% of the unpoisoned model). Noise-based inference defenses reduce accuracy substantially (44.7% on average at a noise standard deviation of 1.0), exposing a sharp privacy–utility trade-off, whereas model compression preserves performance (0.765 against 0.762 for pruning and format conversion, with 8-bit quantization costing up to a further 13.3%). These findings clarify both the promise and the current limitations of decentralized, privacy-preserving learning for the industrial edge-to-cloud continuum.
The results indicate that software engineering work practices are chosen opportunistically, adapted and configured to provide value under the constrains imposed by the startup context.
Nicolò Paternoster, Carmine Giardino, M. Unterkalmsteiner et al.· Information and Software Tec...· 394 citations· ⚡54
This state-of-practice investigation was performed using a literature review followed by a multiple-case study approach and presents how inconsistency between managerial strategies and execution can lead to failure by means of a behavioral framework.
Carmine Giardino, Xiaofeng Wang, P. Abrahamsson· International Conference on...· 175 citations· ⚡19
This study conducts a case survey study based on the secondary data of the major pivots happened in 49 software startups, and demonstrates that customer need pivot is the most common among all pivot types.
Sohaib Shahid Bajwa, Xiaofeng Wang, Anh Nguyen-Duc et al.· Empirical Software Engineeri...· 127 citations· ⚡15
It is found that roles of MVPs in startups were not fully aware by entrepreneurs, and entrepreneurs should consider a systematic approach to fully explore the value of MVP, as a multiple facet product (MFP).
Anh Nguyen-Duc, P. Abrahamsson· International Conference on...· 93 citations· ⚡9
It is found that what perceived as biggest challenges by software startups do vary across different life cycle stages, even though its significance decreases when the learning focuses of the startups move from problem to solution and their products mature.
Xiaofeng Wang, Henry Edison, Sohaib Shahid Bajwa et al.· International Conference on...· 62 citations· ⚡6
A comprehensive overview of how enhanced sampling methods are reshaping the field, with a particular focus on the data-driven construction of collective variables, is provided.
Kai Zhu, Enrico Trizio, Jintu Zhang et al.· Chemical Reviews· 58 citations
Related blog posts
MIT News · Artificial Intelligence· news.mit.eduOct 7, 2026
Students in MIT’s Concourse program delve deeply into the human condition, debate challenging questions, and learn to develop judgment about issues that can’t be quantified.
Training AI agents with reinforcement learning can be challenging because their tools, context, and decision-making are managed by complex frameworks. Agent Lightning connects existing agents to RL training, making it easier to improve them without rebuilding them. The post Agent Lightning v1.0: A 3,500-Line Lightweight Agentic RL Framework for Training Agents with Real Harnesses appeared first on Microsoft Research.
MIT News · Artificial Intelligence· news.mit.eduOct 6, 2026