Publications
Showing 20 results for Author: Mingyan Li
Mar, 2026
Conference Paper
Cognitive IoT and Edge Computing for Intrusion Detection with Federated TinyML
Internet of Things (IoT) and Edge Computing (EC) are rapidly becoming an integral part of the modern society. By 2030, there is estimated to be over 40 billion active and connected IoT devices [1]. This rapid progress also comes with a significant implication on cybersecurity. Back-end infrastructure and systems have a much broader attack than they did previously due to vu…
Mar, 2026
ORNL Report
ORNL AI Capabilities Summary
ORNL AI-powered capabilities in cybersecurity: CESER sponsor is cataloging AI-powered lab capabilities in cybersecurity and has asked us to complete this one-page template for each capability. These can be CESER-funded work, LDRD efforts, even projects or efforts funded by other agencies.) Note the request is for capability, not project.
Feb, 2026
Journal
Designing resilient IoT and Edge Computing with federated tinyML
The rapid growth of the Internet of Things (IoT) and Edge Computing (EC) has brought significant conveniences to modern society but has also greatly expanded the cyber attack surfaces, particularly as these technologies are being increasingly integrated into critical systems such as power grids, healthcare, and smart homes. To improve IoT/EC’s cybersecurity posture, we lev…
Feb, 2026
Journal
Evaluating lightweight unsupervised online IDS for masquerade attacks in CAN
Vehicular controller area networks (CANs) are susceptible to masquerade attacks by malicious adversaries. In masquerade attacks, adversaries silence a targeted ID and then send malicious frames with forged content at the expected timing of benign frames. As masquerade attacks could seriously harm vehicle functionality and are the stealthiest attacks to detect in CAN, recen…
Feb, 2026
ORNL Report
Precision Time Protocol Synchronization Under Network Impairments
This bulletin examines how network anomalies disrupt Precision Time Protocol synchronization on long terrestrial links used for grid timing. Using a CAST testbed with emulated impairments, we measured delay, offset, and time interval error while monitoring packet rates. Symmetric delays did not perturb synchronization, whereas asymmetric delays produced false offsets; jitt…
Jan, 2026
ORNL Report
Sensos Smart Label Performance Summary as Observed by Oak Ridge National Laboratory
Jul, 2025
ORNL Report
Implementing a Terrestrial Timing Solution: Best Practices
This document is an overview and guide on the concept of precision time and how an alternative terrestrial timing solution to the Global Positioning System (GPS) can be implemented. A set of recommendations and best practices, derived from research at Oak Ridge National Laboratory, across industry, and within the US government are provided to enable implementation of a sys…
Jun, 2025
Journal
Adaptive Anomaly Detection for Identifying Attacks in Cyber-Physical Systems: A Systematic Literature Review
Modern cyberattacks in cyber-physical systems (CPS) rapidly evolve and cannot be deterred effectively with most current methods which focused on characterizing past threats. Adaptive anomaly detection (AAD) is among the most promising techniques to detect evolving cyberattacks focused on fast data processing and model adaptation. AAD has been researched in the literature e…