Skip to content
#explainable ai Open access

TrustEdge-V2X: Deployment-Aware Edge Intelligence for V2X/IoV Intrusion and Misbehavior Detection

Sep 2026 · Computers · 0 citations · 18 references
Vehicular Ad Hoc Networks (VANETs)

TL;DR

A secure edge intelligence framework for V2X/IoV intrusion and misbehavior detection, called TrustEdge-V2X, which is deployment-aware and offers a systematic approach to the assessment and selection of vehicular cybersecurity models based on the operational and deployment conditions.

Abstract

Most studies on vehicular cybersecurity focus on classification accuracy but fail to evaluate the applicability of the models to the edge. This paper proposes a secure edge intelligence framework for V2X/IoV intrusion and misbehavior detection, called TrustEdge-V2X, which is deployment-aware. The framework combines dataset-role qualification, attack taxonomy, AI model benchmarking, feature-budget analysis, deployment ranking based on EdgeScore, offline risk-aware orchestration, external validation, robustness testing, explainable AI, repeated-run statistical analysis and ablation studies. Three datasets are assigned different experimental roles: VeReMi_NextGen is used for core V2X/VANET misbehavior detection, CICIoT2023 is used for supporting edge/IoT intrusion experiments and HCRL_CarHacking is used for external IoV/CAN validation. LightGBM outperformed all other AI models in EdgeScore (0.9383), F1-score (0.9878), MCC (0.9758), and inference latency (0.009419 ms per sample) across all eight AI models and six scenarios on VeReMi_NextGen for binary detection. In five dataset-task cases, the accuracy-best model was different from the EdgeScore-best model, which is the most important point to note: the best model in terms of accuracy is not necessarily the best model in terms of EdgeScore. Compact feature subsets were competitive, and robustness testing demonstrated an average F1 decrease of 0.1423 when tested under stress. The orchestration layer was found to be beneficial for the tasks, but it did not always perform better than the best fixed policy. As a whole, TrustEdge-V2X offers a systematic approach to the assessment and selection of vehicular cybersecurity models based on the operational and deployment conditions, not only on the classification accuracy.

Read PDF

Similar papers

Open access Sep 2026

Explainable and Deployment-Aware Zero-Day Intrusion Detection for Cloud-Level Backend and Management Ecosystems in EV/V2X Cyber–Physical Systems

A hybrid multi-layered intrusion detection framework combining traditional machine learning, Deep Neural Architectures (DenseNN), and ensemble methods to evaluate zero-day resilience within cloud-level backend connectivity interfacing EV and V2X management ecosystems is proposed.

H. Sakr, Ahmed A. El-Douh, M. Lapina et al. · 0 citations

V5GIDS: An ETSI NFV MANO-Aligned Federated Intrusion Detection Framework for 5G Networks

Experimental results show that V5GIDS achieves strong detection performance in the evaluated settings while improving deployment relevance through orchestration alignment, reduced telemetry exchange, and resource-aware distributed operation.

Sofian Ben Khalifa, Rahim Taheri, Ivan Jordanov · 0 citations
Open access Aug 2026

A Reliability-Aware Edge–Cloud Framework for Early Intrusion Detection in IoT Networks

A reliability-aware edge–cloud framework that treats early detection as a sequential routing problem, and identifies the minimum-evidence gate and cloud-refinement stage as the main reliability controls.

Siraj Azam, Farheen Naaz, Mikail Mohammed Salim · 0 citations
Open access Sep 2026

Lightweight AI Models for Cyber Threat Detection: An Evaluation of MobileNetV2, Random Forest, and CNN-LSTM for Phishing and Network Anomaly Detection

This work contributes a comparative evaluation of lightweight detection models, consistent attention to security-critical metrics, and interpretable insights to support practical cybersecurity deployment.

Nwagbara Chisom Telvin, Gilbert Imuetin Osaze Aimufua, Raymond Ternenge Igbudu · 0 citations
Conference Aug 2026

A Lightweight Edge-Based Framework for Network Traffic Monitoring and Anomaly Detection in Internet of Medical Things (IoMT) Systems

The Internet of Medical Things (IoMT) connects health sensors to clinical networks, yet endpoint resource constraints prevent native security enforcement [17]. Cloudbased detection introduces latency that hinders real-time attack mitigation [10]. This paper proposes a lightweight, edge-based conceptual framework combin...

B. Liya, Keirthana S, M. K. G. Raja Samvirtha et al. · 0 citations

Related blog posts

Microsoft Research Blog Oct 7, 2026

Agent Lightning v1.0: A 3,500-Line Lightweight Agentic RL Framework for Training Agents with Real Harnesses

Training AI agents with reinforcement learning can be challenging because their tools, context, and decision-making are managed by complex frameworks. Agent Lightning connects existing agents to RL training, making it easier to improve them without rebuilding them. The post Agent Lightning v1.0: A 3,500-Line Lightweight Agentic RL Framework for Training Agents with Real Harnesses appeared first on Microsoft Research.

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.