---
格式版本: 2
标题: "Autonomous Cyber Defense in Connected Vehicles: A Multi-Agent Approach to V2X Security"
原文链接: "https://arxiv.org/abs/2608.19135"
发布日期: "2026-08-19"
发布时间校准状态: "found"
发布时间需复核: "否"
发布时间来源: "rule:local:strict_original_body"
发布时间证据: "**\\[v1\\]** Wed, 19 Aug 2026 17:28:32 UTC (455 KB)"
发布时间校准原因: "规则确认唯一严格发布时间，来源 local:strict_original_body"
发布时间校准置信度: "high"
发布时间候选数量: 18
发布时间严格候选数量: 6
发布时间原页读取状态: "source template page reused from URL open"
发布时间未找到原因: ""
发布时间校准时间: "2026-08-20T15:20:01+08:00"
发布时间仲裁状态: "skipped"
发布时间仲裁尝试次数: 0
发布时间仲裁耗时毫秒: 0
发现时间: "2026-08-20T15:18:01+08:00"
入库时间: "2026-08-20T07:20:01.522Z"
来源平台: "arXiv 学术论文搜索"
搜索渠道: "source_template"
搜索词: "https://arxiv.org/search/?query=deployment&searchtype=all"
匹配关键词:
  - "deployment"
  - "performance"
  - "latency"
相关厂家:
  []
相关专家:
  []
内容类型: "网页"
抓取工具: "Free Fetch + Defuddle"
清洗工具: "Defuddle Markdown + Defuddle/Readability 正文提取"
原始附件:
  []
AI优质: "否"
AI打分: 8
AI分档: "非优质"
AI质检状态: "不通过"
AI打分理由: "论文主题为车联网V2X多代理安全防御，与超节点/AI Rack/机柜级AI基础设施无任何关联，未涉及GPU、互连、供电、液冷或部署。"
AI质检模型: "ali-deepseek-v4-flash"
AI质检时间: "2026-08-20T15:21:38+08:00"
AI主题相关性: 0
AI来源权威性: 8
AI新颖性: 0
AI技术细节: 0
AI商业部署信号: 0
AI完整性: 0
AI摘要: "论文提出车联网V2X安全的三层多代理自主防御架构：车辆端代理在10毫秒内将消息分类为接受、丢弃、隔离或升级，边缘代理在50毫秒内融合多车威胁评估，云端经拜占庭容错联邦学习更新模型。"
AI摘要模型: "ali-deepseek-v4-flash"
AI摘要时间: "2026-09-07T03:19:04.799Z"
采集批次: "2026年8月20日14点19分32秒"
采集批次ID: "20260820-141932-079"
去重键: "https://arxiv.org/abs/2608.19135"
---

## Computer Science > Cryptography and Security

## Title:Autonomous Cyber Defense in Connected Vehicles: A Multi-Agent Approach to V2X Security

Authors:[Krishna Teja Medam](https://arxiv.org/search/cs?searchtype=author&query=Medam,+K+T)

[View PDF](https://arxiv.org/pdf/2608.19135)

> Abstract:A connected vehicle has roughly 100 milliseconds to decide whether an incoming Basic Safety Message is real or fabricated. If a false emergency braking alert reaches the planning pipeline in time, the car brakes - a safety failure triggered by a security failure. Existing intrusion detection systems are not designed to handle that coupling. They operate per vehicle, per message, with static rules - blind to attack patterns that only emerge across a fleet or over time, and blind to the fundamental tension between dropping a suspicious message and dropping a real emergency alert. We propose a three-tier multi-agent architecture that treats this timing constraint as a hard design requirement, not a performance target. At the vehicle level, an onboard agent classifies each incoming V2X message into one of four actions - Accept, Drop, Quarantine, or Escalate - within a 10-millisecond budget, deliberately biased toward Escalate when uncertain, passing ambiguous cases to the roadside edge agent rather than risking a dropped legitimate alert. The edge agent operates across a roadside unit zone with a 50-millisecond budget, fusing threat assessments from multiple vehicles and resolving safety-security conflicts using complementary sensor observations. The cloud tier refines detection models through Byzantine fault-tolerant federated learning and redistributes updated weights to the fleet. Every timing constraint derives directly from the 100-millisecond Basic Safety Message cycles mandated by SAE J2735 and ETSI EN 302 637-2. No existing framework simultaneously assigns standards-grounded latency budgets to all three deployment tiers while treating safety-security conflict resolution as a first-class design constraint. Remaining open problems - adversarial poisoning at the edge and the absence of regulatory frameworks for autonomous security response - are discussed as future work.

| Subjects: | Cryptography and Security (cs.CR); Distributed, Parallel, and Cluster Computing (cs.DC); Multiagent Systems (cs.MA); Networking and Internet Architecture (cs.NI) |
| --- | --- |
| ACM classes: | D.4.6; C.2.0; C.2.1; C.2.4; I.2.11; C.3 |
| Cite as: | [arXiv:2608.19135](https://arxiv.org/abs/2608.19135) \[cs.CR\] |
|  | (or [arXiv:2608.19135v1](https://arxiv.org/abs/2608.19135v1) \[cs.CR\] for this version) |
|  | [https://doi.org/10.48550/arXiv.2608.19135](https://doi.org/10.48550/arXiv.2608.19135) |

## Submission history

From: Krishna Teja Medam \[[view email](https://arxiv.org/show-email/30988bd1/2608.19135)\]  
**\[v1\]** Wed, 19 Aug 2026 17:28:32 UTC (455 KB)

[Which authors of this paper are endorsers?](https://arxiv.org/auth/show-endorsers/2608.19135) | Disable MathJax ([What is MathJax?](https://info.arxiv.org/help/mathjax.html))
