{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T09:24:50Z","timestamp":1775726690112,"version":"3.50.1"},"reference-count":30,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T00:00:00Z","timestamp":1775692800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T00:00:00Z","timestamp":1775692800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/501100013078","name":"Natural Science Research Project of Guizhou Province","doi-asserted-by":"publisher","award":["No. QianKeHe Basic-[2024] Youth 127"],"award-info":[{"award-number":["No. QianKeHe Basic-[2024] Youth 127"]}],"id":[{"id":"10.13039\/501100013078","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100013078","name":"Natural Science Research Project of Guizhou Province","doi-asserted-by":"publisher","award":["No. MS[2025]623"],"award-info":[{"award-number":["No. MS[2025]623"]}],"id":[{"id":"10.13039\/501100013078","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Open Project Fund of Key Laboratory of Cyberspace Security Defense","award":["No. 2024-MS-07"],"award-info":[{"award-number":["No. 2024-MS-07"]}]},{"name":"Guizhou University Research Project of Introducing Talents","award":["Renji Hezi of Guizhou University (2024) 19"],"award-info":[{"award-number":["Renji Hezi of Guizhou University (2024) 19"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cybersecurity"],"abstract":"<jats:title>Abstract<\/jats:title>\n                  <jats:p>Industry 4.0 leverages information and intelligent technologies to create a highly flexible production model that supports personalized and digital products and services. However, stringent privacy protection requirements have resulted in the fragmentation and inaccessibility of production data across various companies, creating a significant data barrier. Federated learning (FL) effectively addresses privacy concerns during the data sharing process and facilitates the collaborative use of industrial production data across various institutions. However, due to the characteristics of the FL training model, attackers can implement reconstruction attacks and attribute inference attacks on the local model or global model to obtain the privacy of the data provider. Additionally, poisoning attacks by malicious users can damage the performance of FL models, thereby affecting the system\u2019s overall utility. Many studies propose new techniques that combine privacy mechanisms and poisoning detection, but most solutions rely on outlier detection and introduce additional risks, making them impractical for real-world applications. To address these issues, we propose a privacy-preserving FL optimization method capable of resisting highly concealed poisoning attacks, FedCPA. Specifically, we protect the local model by adding eliminable noise, allowing the server to perform secure aggregation based on the fuzzy model. Furthermore, we design a ciphertext-based, two-layer architecture poisoning model detection algorithm to defend against highly concealed poisoning attacks such as Sybil attacks. Finally, the correctness of the entire calculation process is calculated and proven.<\/jats:p>","DOI":"10.1186\/s42400-026-00575-6","type":"journal-article","created":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T08:37:23Z","timestamp":1775723843000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["FedCPA: A two-layer secure aggregation federated learning with lightweight privacy protection for Industry 4.0"],"prefix":"10.1186","volume":"9","author":[{"given":"Jing","family":"Li","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5436-7674","authenticated-orcid":false,"given":"Zhou","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Youliang","family":"Tian","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chi","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"HongJun","family":"Luo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"LinJun","family":"He","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,4,9]]},"reference":[{"key":"575_CR1","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.comcom.2024.05.005","volume":"223","author":"S Basudan","year":"2024","unstructured":"Basudan S (2024) A privacy-preserving federated learning protocol with a secure data aggregation for the internet of everything. Comput Commun 223:1\u201314","journal-title":"Comput Commun"},{"key":"575_CR2","unstructured":"Blanchard P, El\u00a0Mhamdi EM, Guerraoui R, Stainer J (2017)Machine learning with adversaries: Byzantine tolerant gradient descent. Adv Neural Inf Process Syst 30"},{"key":"575_CR3","doi-asserted-by":"crossref","unstructured":"Bonawitz K, Ivanov V, Kreuter B, Marcedone A, McMahan HB, Patel S, Ramage D, Segal A, Seth K (2017) Practical secure aggregation for privacy-preserving machine learning. In: Proceedings of the ACM SIGSAC conference on computer and communications security, pp. 1175\u20131191","DOI":"10.1145\/3133956.3133982"},{"key":"575_CR4","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102199","volume":"103","author":"C Fang","year":"2021","unstructured":"Fang C, Guo Y, Hu Y, Ma B, Feng L, Yin A (2021) Privacy-preserving and communication-efficient federated learning in internet of things. Comput Security 103:102199","journal-title":"Comput Security"},{"key":"575_CR5","doi-asserted-by":"crossref","unstructured":"Fredrikson M, Jha S, Ristenpart T (2015) Model inversion attacks that exploit confidence information and basic countermeasures. In: Proceedings of the 22nd ACM SIGSAC conference on computer and communications security, pp. 1322\u20131333","DOI":"10.1145\/2810103.2813677"},{"key":"575_CR6","unstructured":"Geyer RC, Klein T, Nabi M (2017) Differentially private federated learning: A client level perspective. arXiv preprint arXiv:1712.07557"},{"issue":"10","key":"575_CR7","doi-asserted-by":"publisher","first-page":"6532","DOI":"10.1109\/TII.2019.2945367","volume":"16","author":"M Hao","year":"2019","unstructured":"Hao M, Li H, Luo X, Xu G, Yang H, Liu S (2019) Efficient and privacy-enhanced federated learning for industrial artificial intelligence. IEEE Trans Industr Inf 16(10):6532\u20136542","journal-title":"IEEE Trans Industr Inf"},{"key":"575_CR8","doi-asserted-by":"crossref","unstructured":"Hao M, Li H, Xu G, Liu S, Yang H (2019) Towards efficient and privacy-preserving federated deep learning. In: IEEE international conference on communications, pp. 1\u20136","DOI":"10.1109\/ICC.2019.8761267"},{"key":"575_CR9","doi-asserted-by":"publisher","first-page":"2529","DOI":"10.1007\/s11280-020-00780-4","volume":"23","author":"X Huang","year":"2020","unstructured":"Huang X, Ding Y, Jiang ZL, Qi S, Wang X, Liao Q (2020) Dp-fl: a novel differentially private federated learning framework for the unbalanced data. World Wide Web 23:2529\u20132545","journal-title":"World Wide Web"},{"key":"575_CR10","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103562","volume":"136","author":"Y Huang","year":"2024","unstructured":"Huang Y, Yang G, Zhou H, Dai H, Yuan D, Yu S (2024) Vppfl: A verifiable privacy-preserving federated learning scheme against poisoning attacks. Comput Security 136:103562","journal-title":"Comput Security"},{"key":"575_CR11","unstructured":"Jayaraman B, Wang L, Evans D, Gu Q (2018) Distributed learning without distress: Privacy-preserving empirical risk minimization. Adv Neural Inf Process Syst 31"},{"key":"575_CR12","doi-asserted-by":"crossref","unstructured":"Krau\u00df T, Dmitrienko A (2023) Mesas: Poisoning defense for federated learning resilient against adaptive attackers. In: Proceedings of the ACM SIGSAC conference on computer and communications security, pp. 1526\u20131540","DOI":"10.1145\/3576915.3623212"},{"key":"575_CR13","unstructured":"Liu Y, Jia Z, Chen X, Bian S, Xu R, Li D, Lu Y (2025) Aion: Robust and efficient $$\\{$$Multi-Round$$\\}$$$$\\{$$Single-Mask$$\\}$$ secure aggregation against malicious participants. In: 34th USENIX security symposium (USENIX Security 25), pp. 3025\u20133044"},{"key":"575_CR14","doi-asserted-by":"crossref","unstructured":"Ma Y, Woods J, Angel S, Polychroniadou A, Rabin T (2023) Flamingo: Multi-round single-server secure aggregation with applications to private federated learning. In: 2023 IEEE symposium on security and privacy (SP), pp. 477\u2013496 . IEEE","DOI":"10.1109\/SP46215.2023.10179434"},{"key":"575_CR15","unstructured":"McMahan B, Moore E, Ramage D, et al (2017) Communication-efficient learning of deep networks from decentralized data. In: Artificial intelligence and statistics, pp. 1273\u20131282"},{"issue":"5","key":"575_CR16","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11432-023-3977-9","volume":"67","author":"Y Miao","year":"2024","unstructured":"Miao Y, Kuang D, Li X, Leng T, Liu X, Ma J (2024) Efficient privacy-preserving federated learning under dishonest-majority setting. SCIENCE CHINA Inf Sci 67(5):1\u20132","journal-title":"SCIENCE CHINA Inf Sci"},{"key":"575_CR17","unstructured":"Nguyen TD, Rieger P, Chen H, Yalame H, M\u00f6llering H, Fereidooni H, Marchal S, Miettinen M, Mirhoseini A, Zeitouni S, et al (2022) Flame: Taming backdoors in federated learning. In: 31st USENIX security symposium (USENIX Security 22), pp. 1415\u20131432"},{"key":"575_CR18","unstructured":"Noble M, Bellet A, Dieuleveut A (2022) Differentially private federated learning on heterogeneous data. In: International conference on artificial intelligence and statistics, pp. 10110\u201310145"},{"key":"575_CR19","doi-asserted-by":"crossref","unstructured":"Shi Y, Liu Y, Wei K, Shen L, Wang X, Tao D (2023) Make landscape flatter in differentially private federated learning. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp. 24552\u201324562","DOI":"10.1109\/CVPR52729.2023.02352"},{"key":"575_CR20","doi-asserted-by":"crossref","unstructured":"Shokri, R., Stronati M, Song C, et al (2017) Membership inference attacks against machine learning models. In: 2017 IEEE symposium on security and privacy, pp. 3\u201318","DOI":"10.1109\/SP.2017.41"},{"issue":"6","key":"575_CR21","doi-asserted-by":"publisher","first-page":"5005","DOI":"10.1109\/TDSC.2023.3239007","volume":"20","author":"X Tang","year":"2023","unstructured":"Tang X, Shen M, Li Q, Zhu L, Xue T, Qu Q (2023) Pile: Robust privacy-preserving federated learning via verifiable perturbations. IEEE Trans Depend Secure Comput 20(6):5005\u20135023","journal-title":"IEEE Trans Depend Secure Comput"},{"key":"575_CR22","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2024.126228","volume":"267","author":"X Wu","year":"2025","unstructured":"Wu X, Chen Y, Yu H, Yang Z (2025) Privacy-preserving federated learning based on noise addition. Expert Syst Appl 267:126228","journal-title":"Expert Syst Appl"},{"key":"575_CR23","doi-asserted-by":"crossref","unstructured":"Yang X, Feng Y, Fang W, Shao J, Tang X, Xia S-T, Lu R (2022) An accuracy-lossless perturbation method for defending privacy attacks in federated learning. In: Proceedings of the ACM Web conference, pp. 732\u2013742","DOI":"10.1145\/3485447.3512233"},{"key":"575_CR24","unstructured":"Yin D, Chen Y, Kannan R, Bartlett P (2018) Byzantine-robust distributed learning: Towards optimal statistical rates. In: International conference on machine learning, pp. 5650\u20135659 . Pmlr"},{"issue":"5","key":"575_CR25","doi-asserted-by":"publisher","first-page":"2864","DOI":"10.1109\/TNSE.2022.3185327","volume":"10","author":"L Zhang","year":"2022","unstructured":"Zhang L, Xu J, Vijayakumar P, Sharma PK, Ghosh U (2022) Homomorphic encryption-based privacy-preserving federated learning in iot-enabled healthcare system. IEEE Trans Netw Sci Eng 10(5):2864\u20132880","journal-title":"IEEE Trans Netw Sci Eng"},{"key":"575_CR26","unstructured":"Zhang C, Li S, Xia J, Wang W, Yan F, Liu Y (2020) Batchcrypt: Efficient homomorphic encryption for cross-silo federated learning. In: USENIX annual technical conference, pp. 493\u2013506"},{"issue":"11","key":"575_CR27","first-page":"8836","volume":"8","author":"Y Zhao","year":"2020","unstructured":"Zhao Y, Zhao J, Yang M, Wang T, Wang N, Lyu L, Niyato D, Lam K-Y (2020) Local differential privacy-based federated learning for internet of things. IEEE Int Things J 8(11):8836\u20138853","journal-title":"IEEE Int Things J"},{"issue":"2","key":"575_CR28","doi-asserted-by":"publisher","first-page":"988","DOI":"10.1109\/TDSC.2022.3146448","volume":"20","author":"Y Zheng","year":"2022","unstructured":"Zheng Y, Lai S, Liu Y, Yuan X, Yi X, Wang C (2022) Aggregation service for federated learning: An efficient, secure, and more resilient realization. IEEE Trans Dependable Secure Comput 20(2):988\u20131001","journal-title":"IEEE Trans Dependable Secure Comput"},{"issue":"3","key":"575_CR29","first-page":"1941","volume":"20","author":"J Zhou","year":"2022","unstructured":"Zhou J, Wu N, Wang Y, Gu S, Cao Z, Dong X, Choo K-KR (2022) A differentially private federated learning model against poisoning attacks in edge computing. IEEE Trans Dependable Secure Comput 20(3):1941\u20131958","journal-title":"IEEE Trans Dependable Secure Comput"},{"key":"575_CR30","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2024.110321","volume":"243","author":"H Zhou","year":"2024","unstructured":"Zhou H, Zheng Y, Jia X (2024) Towards robust and privacy-preserving federated learning in edge computing. Comput Netw 243:110321","journal-title":"Comput Netw"}],"container-title":["Cybersecurity"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-026-00575-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1186\/s42400-026-00575-6","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-026-00575-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T08:37:38Z","timestamp":1775723858000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1186\/s42400-026-00575-6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,4,9]]},"references-count":30,"journal-issue":{"issue":"1","published-online":{"date-parts":[[2026,12]]}},"alternative-id":["575"],"URL":"https:\/\/doi.org\/10.1186\/s42400-026-00575-6","relation":{},"ISSN":["2523-3246"],"issn-type":[{"value":"2523-3246","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,4,9]]},"assertion":[{"value":"6 November 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 March 2026","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"9 April 2026","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}],"article-number":"152"}}