SearcharxivSearch

arXiv subjects

Houtianfu Wang

Publications and source records attributed to Houtianfu Wang.

14 recordsLinked to original sources

Edge-Side Fingerprints of Service Tiering and Quota Throttling in Starlink

We design and evaluate an edge-side measurement procedure for auditing service tiering and quota-based throttling in Starlink. Using a 232.8-hour plan-hopping campaign on a UK residential terminal, we align 1 Hz terminal telemetry with host-side probes to obtain portal-labeled traces spanning priority, post-quota throttling, stay-active operation, and residential service. These regimes manifest as distinct signatures in goodput, PoP RTT, and an internal-to-user ratio \(R=C_{\mathrm{int}}/T_{\mathrm{user}}\). We further show that high-speed \(R\) is stable over 30-minute sub-windows, that low-rate clusters have no aligned persistent obstruction or PoP-loss signature, and that clean high-speed dips do not move \(R\) into the low-rate band. A lightweight rule on windowed medians separates high-speed from low-rate operation on this trace without operator visibility.

eess.SP

Graph Representation Learning Augmented Model Manipulation on Federated Fine-Tuning of LLMs

Federated fine-tuning (FFT) has emerged as a privacy-preserving paradigm for collaboratively adapting large language models (LLMs). Built upon federated learning, FFT enables distributed agents to jointly refine a shared pretrained LLM by aggregating local LLM updates without sharing local raw data. However, FFT-based LLMs remain vulnerable to model manipulation threats, in which adversarial participants upload manipulated LLM updates that corrupt the aggregation process and degrade the performance of the global LLM. In this paper, we propose an Augmented Model maniPulation (AugMP) strategy against FFT-based LLMs. Specifically, we design a novel graph representation learning framework that captures feature correlations among benign LLM updates to guide the generation of malicious updates. To enhance manipulation effectiveness and stealthiness, we develop an iterative manipulation algorithm based on an augmented Lagrangian dual formulation. Through this formulation, malicious updates are optimized to embed adversarial objectives while preserving benign-like parameter characteristics. Experimental results across multiple LLM backbones demonstrate that the AugMP strategy achieves the strongest manipulation performance among all competing baselines, reducing the global LLM accuracy by up to \(26\%\) and degrading the average accuracy of local LLM agents by up to \(22\%\). Meanwhile, AugMP maintains high statistical and geometric consistency with benign updates, enabling it to evade conventional distance- and similarity-based defense methods.

cs.LG

Deadline-Bound Finite-Object Delivery over Intermittent LEO Satellite Contact Plans under Residual-Service Accounting

Low-Earth-orbit (LEO) relay networks deliver finite objects -- sensing tiles, telemetry blocks, model updates, and checkpoints -- over intermittent inter-satellite and space-to-ground contact plans. Partial delivery is insufficient when the complete object misses its deadline. When an object is split across candidate paths, a path-private evaluation can count the same contact service more than once and silently under-count completion. We develop a residual-service-aware delivery layer that consumes candidate paths from contact-plan route generation and tests whether the complete object can be delivered before its deadline under per-edge first-in-first-out residual service. Under controlled shared-contact contention, path-private evaluation under-counts completion by up to 154 s and can report finite completion for a fixed plan with no residual-service completion. For edge-disjoint complementary contacts, the layer reduces to fixed-path service; we derive a sufficient service-budget condition under which two-way striping strictly enlarges the feasible payload region. We verify a restricted exhaustive reference, characterize runtime over a 20-180-satellite procedural contact model, and show that bounded two-way striping reduces mean and median gaps to the restricted reference by about 40%, while P90 and worst-case gaps remain unchanged.

eess.SP

A reversed solar illumination dependence of unintended emission from Starlink Direct-to-Cell satellites at 72-234 MHz with the EDA2

Second-generation Starlink Direct-to-Cell (DTC) satellites carry an additional payload for direct cellular phone connectivity whose unintended electromagnetic radiation (UEMR) at sub-300 MHz frequencies has not been individually characterised. We reanalyse 112,534 detections from 1,806 Starlink satellites observed with the Engineering Development Array version 2 (EDA2) at 21 frequencies between 72.685 and 234.375 MHz (Grigg et al. 2025), separating 175 DTC and 1,623 Ku-only v2-Mini comparison satellites via the McDowell General Catalogue (McDowell 2020). DTC satellites emit a range-corrected flux density 1.45x that of the Ku-only comparison (Cliff's delta = +0.30, p = 2.6e-11). At 230.469 MHz the XX detection fraction reaches 0.811 against a 0.481 baseline (p ~ 1e-274), and 11 of 21 frequency channels show Benjamini-Hochberg-significant polarisation anomalies. The DTC population is brighter in eclipse than in sunlight (illuminated/eclipsed flux density ratio 0.47) while the Ku-only comparison shows the opposite sense (1.18); the reversal persists across altitude, sub-satellite latitude, frequency, and launch-epoch matching. The reversal strongly disfavours UEMR mechanisms that scale monotonically with instantaneous solar photocurrent and favours an active on-board source whose effective duty cycle is larger at lower equilibrium temperature. Within the 230.469 MHz coarse channel, fine-channel inspection isolates the excess to a single ~24 kHz bin near 230.627 MHz, tail-driven and absent at five control channels. Three falsifiable mechanism-discrimination tests show this feature is not coincident with the LOFAR-resolved Bassa et al. (2024) clock fundamentals, is unresolved at the EDA2 24 kHz resolution, and is heterogeneously expressed across the v2-Mini fleet rather than driven by a few permanently bright units or by uniform thermal scaling.

eess.SP

Rain Rate Estimation Bounds and Weather-Adaptive Pilot Allocation for LEO Satellite ISAC

Rain attenuates Ku-band satellite signals by up to 20~dB, encoding precipitation information along the Earth-space slant path. This paper derives the Bayesian Cramér-Rao bound (BCRB) for rain rate estimation from LEO broadband OFDM downlinks. Using corrected ITU-R P.838-3 coefficients, the standard CRB yields a minimum detectable rain rate $R_{\min} \approx 4.3\mmh$ for a single link at the $38^\circ$ reference elevation. We derive the prior Fisher information in closed form for log-normal rain ($c_v = 1.05$, from 186{,}292 samples) and show that a single-snapshot BCRB reduces $R_{\min}$ to $1.1\mmh$; exploiting temporal correlation ($ρ= 0.95$) over a 30-min window further tightens it to $0.95\mmh$, while multi-link fusion across $N = 215$ links lowers the operating-point RMSE \emph{lower bound} at $R = 20\mmh$ to approximately $0.07\mmh$. Building on these bounds, we formulate a weather-adaptive pilot allocation that minimizes the BCRB subject to a hard spectral-efficiency constraint, characterize its three-regime structure (full-sensing, throughput-tracking, outage), and pair it with a CUSUM rain onset detector achieving sub-10-min delay for $R \geq 20\mmh$. A closed-form analysis of dynamic LEO slant geometry identifies a sensing-optimal elevation at the P.618-validity floor of $15^\circ$ that yields a $1.58\times$ geometric improvement over the $38^\circ$ baseline, exposing a structural anti-correlation between sensing- and communication-optimal elevations along an orbital pass. Validation against 9.4~million radar samples from 215 Ku-band GEO satellite links ($r = 0.72$, RMSE~$= 1.24\dB$) and 113 rain gauges confirms the underlying attenuation model; the bounds transfer to LEO constellations under matched OFDM signal parameters, with dedicated LEO validation left for future work.

eess.SP

Graph Representation-based Model Poisoning on the Heterogeneous Internet of Agents

Internet of Agents (IoA) envisions a unified, agent-centric paradigm where heterogeneous large language model (LLM) agents can interconnect and collaborate at scale. Within this paradigm, federated fine-tuning (FFT) serves as a key enabler that allows distributed LLM agents to co-train an intelligent global LLM without centralizing local datasets. However, the FFT-enabled IoA systems remain vulnerable to model poisoning attacks, where adversaries can upload malicious updates to the server to degrade the performance of the aggregated global LLM. This paper proposes a graph representation-based model poisoning (GRMP) attack, which exploits overheard benign updates to construct a feature correlation graph and employs a variational graph autoencoder to capture structural dependencies and generate malicious updates. A novel attack algorithm is developed based on augmented Lagrangian and subgradient descent methods to optimize malicious updates that preserve benign-like statistics while embedding adversarial objectives. Experimental results show that the proposed GRMP attack can substantially decrease accuracy across different LLM models while remaining statistically consistent with benign updates, thereby evading detection by existing defense mechanisms and underscoring a severe threat to the ambitious IoA paradigm.

cs.NI

RIS-Aided E2E Multi-Path Uplink Transmission Optimization for 6G Time-Sensitive Services

The Access Traffic Steering, Switching, and Splitting (ATSSS) defined in the latest 3GPP Release 19 enables traffic flow over the multiple access paths to achieve the lower-latency End-to-end (E2E) delivery for 6G time-sensitive services. However, the existing E2E multi-path operation often falls short of more stringent QoS requirements for 6G time-sensitive services. This work proposes a Reconfigurable Intelligent Surfaces (RIS)-aided E2E multi-path uplink (UL) transmission architecture that explicitly accounts for both radio link latency and N3 backhaul latency, via the coupled designs of the UL traffic-splitting ratio, transmit power, receive combining, and RIS phase shift under practical constraints to achieve the minimum average E2E latency. We develop an alternating optimization framework that updates the above target parameters to be optimized. The simulations were conducted to compare the effectiveness of the proposed E2E optimization framework that lowers the average E2E latency up to 43% for a single user and 32% for the whole system compared with baselines in our prior work [1].

eess.SY

Performance Bounds and Robust Filtering for LEO Inter-Satellite Synchronization under Cross-Epoch Doppler Coupling

Low Earth orbit (LEO) inter-satellite links (ISLs) must achieve joint synchronization and ranging under severe hardware impairments, namely oscillator phase noise, clock drift, and measurement outliers, exacerbated by rapid relative dynamics exceeding 7~km/s. In coherent Doppler processing, the frequency observable depends on the \emph{difference} between consecutive carrier phase states, creating a cross-epoch coupling structure that fundamentally affects estimation-theoretic performance limits. This paper makes three contributions. First, we prove analytically that this cross-epoch Doppler coupling is \emph{necessary} to avoid unbounded carrier phase uncertainty: without it, phase variance grows linearly without bound. Second, we derive a posterior Cramér-Rao bound (PCRB) via the Tichavský recursion that explicitly incorporates the resulting 10$\times$10 block information structure. Third, we propose a hybrid robust filtering framework combining hard gating for impulsive cycle-slip outliers with Huber M-estimation for heavy-tail contamination, using TASD-aware innovation covariance to account for cross-epoch uncertainty in residual normalization. Monte Carlo simulations at Ka-band confirm that the PCRB accurately lower-bounds estimator performance under nominal conditions, while the hybrid method reduces 95th-percentile phase error by 27--93\% compared to standard extended Kalman filtering across different outlier regimes.

eess.SP

AFDM for LEO Inter-Satellite Links: Path-Level CSI Prediction and CRLB-Guided Pre-Equalization

Low-Earth-orbit (LEO) inter-satellite links must cope with strongly doubly selective channels and aged channel state information (CSI). In this paper, the term ``sensing'' refers to the receiver-side identifiability of a small set of dominant delay--Doppler path parameters, quantified via CRLB-type proxies, rather than a full-fledged target-sensing pipeline. Affine frequency division multiplexing (AFDM) provides a sparse delay--Doppler (DD) representation well suited to such channels, yet most existing AFDM designs assume ideal CSI, operate on grid-based channel coefficients, and optimize only communication performance. This paper proposes a two-stage AFDM-based ISAC framework for mobile LEO ISLs that explicitly operates under predicted CSI. In Stage~I, we model the channel by a small number of dominant specular paths and perform sequence prediction directly on their complex gains, delays, and Dopplers, from which we reconstruct the AFDM DD-domain kernel used as the sole instantaneous CSI at the transmitter. In Stage~II, we design a sensing-aware AFDM pre-equalizer by augmenting the classical minimum mean-square error (MMSE) solution with a term obtained from Cramér--Rao-type sensitivity measures evaluated under the predicted channel model, leading to a first-order surrogate of a CRLB-regularized pre-equalizer with a single tuning parameter that controls the communication--sensing tradeoff. Simulation results for representative LEO ISL trajectories show that the proposed path-level predictor improves effective-kernel reconstruction over AFDM-unaware baselines, and that, under predicted CSI, the sensing-aware pre-equalizer significantly improves sensing-oriented metrics over outdated-CSI baselines while keeping symbol error rates close to a communication-oriented MMSE design with only modest additional complexity.

eess.SP

Environment-to-Link ISAC with Space-Weather Sensing for Ka-Band LEO Downlinks

Ka-band low-Earth-orbit (LEO) downlinks can suffer second-scale reliability collapses during flare-driven ionospheric disturbances, where fixed fade margins and reactive adaptive coding and modulation (ACM) are either overly conservative or too slow. This paper presents a GNSS-free, link-internal predictive controller that senses the same downlink via a geometry-free dual-carrier phase observable at 10~Hz: a high-pass filter and template-based onset detector, followed by a four-state nearly-constant-velocity Kalman filter, estimate $Δ$VTEC and its rate, and a short look-ahead (60~s) yields an endpoint outage probability used as a risk gate to trigger one-step discrete MCS down-switch and pilot-time update with hysteresis. Evaluation uses physics-informed log replay driven by real GOES X-ray flare morphologies under a disjoint-day frozen-calibration protocol, with uncertainty reported via paired moving-block bootstrap. Across stressed 60~s windows, the controller reduces peak BLER by 25--30\% and increases goodput by 0.10--0.15~bps/Hz versus no-adaptation baselines under a unified link-level abstraction. The loop runs in $\mathcal{O}(1)$ per 0.1~s epoch (about 0.042~ms measured), making on-board implementation feasible, and scope and deployment considerations for dispersion-dominated events are discussed.

eess.SP

Fundamental Limits of Cooperative Integrated Sensing and Communications over Low-Earth Orbit THz Satellite Channels

Terahertz inter-satellite links enable unprecedented sensing precision for Low Earth Orbit (LEO) constellations, yet face fundamental bounds from hardware impairments, pointing errors, and network interference. We develop a Network Cramér-Rao Lower Bound (N-CRLB) framework incorporating dynamic topology, hardware quality factor $Γ_{\text{eff}}$, phase noise $σ^2_ϕ$, and cooperative effects through recursive Fisher Information analysis. Our analysis reveals three key insights: (i) hardware and phase noise create power-independent performance ceilings ($σ_{\text{ceiling}} \propto \sqrt{Γ_{\text{eff}}}$) and floors ($σ_{\text{floor}} \propto \sqrt{σ^2_ϕ}/f_c$), with power-only scaling saturating above $\text{SNR}_{\text{crit}}=1/Γ_{\text{eff}}$; (ii) interference coefficients $α_{\ell m}$ enable opportunistic sensing with demonstrated gains of 5.5~dB under specific conditions (65~dB processing gain, 50~dBi antennas); (iii) measurement correlations from shared timing references, when properly modeled, do not degrade performance and can provide common-mode rejection benefits compared to mismodeled independent-noise baselines. Sub-millimeter ranging requires co-optimized hardware ($Γ_{\text{eff}}<0.01$), oscillators ($σ^2_ϕ<10^{-2}$), and appropriate 3D geometry configurations.

eess.SP

Graph Representation-based Model Poisoning on Federated Large Language Models

Federated large language models (FedLLMs) enable powerful generative capabilities within wireless networks while preserving data privacy. Nonetheless, FedLLMs remain vulnerable to model poisoning attacks. This article first reviews recent advancements in model poisoning techniques and existing defense mechanisms for FedLLMs, underscoring critical limitations, especially when dealing with non-IID textual data distributions. Current defense strategies predominantly employ distance or similarity-based outlier detection mechanisms, relying on the assumption that malicious updates markedly differ from benign statistical patterns. However, this assumption becomes inadequate against adaptive adversaries targeting billion-parameter LLMs. The article further investigates graph representation-based model poisoning (GRMP), an emerging attack paradigm that exploits higher-order correlations among benign client gradients to craft malicious updates indistinguishable from legitimate ones. GRMP can effectively circumvent advanced defense systems, causing substantial degradation in model accuracy and overall performance. Moreover, the article outlines a forward-looking research roadmap that emphasizes the necessity of graph-aware secure aggregation methods, specialized vulnerability metrics tailored for FedLLMs, and evaluation frameworks to enhance the robustness of federated language model deployments.

cs.CR

Semantic Communication for the Internet of Space: New Architecture, Challenges, and Future Vision

The expansion of sixth-generation (6G) wireless networks into space introduces technical challenges that conventional bit-oriented communication approaches cannot efficiently address, including intermittent connectivity, severe latency, limited bandwidth, and constrained onboard resources. To overcome these limitations, semantic communication has emerged as a transformative paradigm, shifting the communication focus from transmitting raw data to delivering context-aware, missionrelevant information. In this article, we propose a semantic communication architecture explicitly tailored for the 6G Internet of Space (IoS), integrating multi-modal semantic processing, AIdriven semantic encoding and decoding, and adaptive transmission mechanisms optimized for space environments. The effectiveness of our proposed framework is demonstrated through a representative deep-space scenario involving semantic-based monitoring of Mars dust storms. Finally, we outline open research challenges and discuss future directions toward realizing practical semantic-enabled IoS systems.

cs.NI

Gravitational Communication: Fundamentals, State-of-the-Art and Future Vision

This paper provides a comprehensive overview of fundamentals and the latest research progress in gravitational communication, with a detailed historical review of gravitational wave generation and detection. Key aspects covered include the evolution of detection sensitivity and generation methods, modulation techniques, and gravitational communication channel. While gravitational wave communication holds promise for overcoming limitations in traditional electromagnetic communication, significant challenges remain, particularly in wave generation and detection. The paper also explores various modulation techniques and examines environmental influences on gravitational wave transmission. A comparative discussion is provided between gravitational and classical communication modalities -- including electromagnetic, quantum, particle, acoustic, and optical communications -- highlighting the strengths and limitations of each. Furthermore, potential application and future vision for gravitational communication are also envisioned. Finally, Potential research directions to bridge the gap between theoretical and practical applications of gravitational wave communication are investigated.

physics.gen-ph