Deep Fingerprinting: Undermining Website Fingerprinting Defenses with Deep Learning

by   Payap Sirinam, et al.

Website fingerprinting enables a local eavesdropper to determine which websites a user is visiting over an encrypted connection, and the state-of-the-art attacks have been shown to be effective even when the user is protecting her privacy with the Tor anonymity system. Recently, lightweight website fingerprinting defenses for Tor have emerged that substantially degrade existing attacks, including WTF-PAD and Walkie-Talkie. In this work, we propose a new website fingerprinting attack against Tor that leverages a type of deep learning called convolution neural networks (CNN), and we evaluate this attack against WTF-PAD and Walkie-Talkie. The CNN attack attains over 98 Tor traffic without defenses, better than all prior attacks, and it is also effective against WTF-PAD with over 90 effective, holding the attack to just 53 setting, the CNN attack remains effective, with a 93 less than 1 defended with WTF-PAD in this setting, the attack still can get a 60 positive rate with a less than 1 a need for more study of robust defenses that could be deployed in Tor.


page 1

page 2

page 3

page 4


Var-CNN and DynaFlow: Improved Attacks and Defenses for Website Fingerprinting

In recent years, there have been many works that use website fingerprint...

RegulaTOR: A Powerful Website Fingerprinting Defense

Website Fingerprinting (WF) attacks are used by passive, local attackers...

Robust Website Fingerprinting Through the Cache Occupancy Channel

Website fingerprinting attacks, which use statistical analysis on networ...

Towards Effective and Efficient Padding Machines for Tor

Tor recently integrated a circuit padding framework for creating padding...

Traffic Analysis with Deep Learning

Deep Neural Networks (DNN) has obtained enormous attention with its adva...

A Survey of Distributed Denial of Service Attacks and Defenses

A distributed denial-of-service (DDoS) attack is an attack wherein multi...

Padding-only defenses add delay in Tor

Website fingerprinting is an attack that uses size and timing characteri...