Tor Trace in Images: A Novel Multi-Tab Website Fingerprinting Attack With Object Detection

Author:

Xu Yifan12,Wang Liangmin12,Chen Jie12,Zhou Qiang3

Affiliation:

1. School of Cyber Science and Engineering, Southeast University , Nanjing 211189 , China

2. Engineering Research Center of Blockchain Application , Supervision, and Management, Southeast University, Ministry of Education, Nanjing 211189 , China

3. School of Computer Science and Communication Engineer , Jiangsu University, Zhenjiang 212013 , China

Abstract

Abstract Website fingerprinting (WF) attacks on Tor enable a passive adversary to predict the encrypted web browsing activity of a victim by matching the eavesdropped traffic with pretrained classifiers. Nowadays, deep learning-based methods have led to significant achievements in the single-tab Tor WF attack. However, the practical implementation of these single-tab methods is challenging due to most real-world Tor traffic involving multiple tabs. Existing single-tab methods hardly identify multi-tab WF due to the overlapping areas of the traffic trace confusing the original features. In this paper, we propose a Trace Image-based Object Detection model named TIOD as a novel multi-tab attacking model. Specifically, we model the traffic overlap in Tor as the object overlap in object detection tasks from the computer vision field. Besides, we propose a special S-matrix scheme to convert a trace into an image: (i) Retaining the original features by keeping the direction and order of the cells and (ii) Bringing cells of the same page closer together in space. We then utilize a specially designed object detection model for trace images, WF R-CNN, to extract features and identify potential destination websites within multi-tab traces. Comparative analysis with other multi-tab attacks is conducted, and the empirical results consistently underscore the superior performance of the proposed trace image model across diverse datasets. In the two-tab setting, TIOD achieves the best accuracy with more than 85% on both the first and second tabs.

Funder

National Natural Science Foundation of China

Fundamental Research Funds for the Central Universities

Publisher

Oxford University Press (OUP)

Reference32 articles.

1. Users - tor metrics,2023

2. Improved website fingerprinting on tor;Wang,2013

3. k-fingerprinting: a robust scalable website fingerprinting technique;Hayes,2016

4. Subverting website fingerprinting defenses with robust traffic representation;Shen,2023

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3