数据通信科学技术研究所,北京 100083
杨 斌 (1999—),男,研究生在读。研究方向为信息与通信工程。E-mail: 19995324726@163.com
修回日期:2025-08-04,
录用日期:2025-08-05,
纸质出版日期:2024-12-15
移动端阅览
杨斌. Tor网络的网站指纹攻击方法研究[J]. 新一代信息技术, 2024, 7(9-12): 42-46
YANG Bin. Research on Website Fingerprinting Attack Methods in Tor Network[J]. New Generation of Information Technology, 2024, 7(9-12): 42-46
杨斌. Tor网络的网站指纹攻击方法研究[J]. 新一代信息技术, 2024, 7(9-12): 42-46 DOI: 10.12263/newIT.2024.9-12.007.
YANG Bin. Research on Website Fingerprinting Attack Methods in Tor Network[J]. New Generation of Information Technology, 2024, 7(9-12): 42-46 DOI: 10.12263/newIT.2024.9-12.007.
Tor(The onion router)网络作为目前广泛流行的匿名通信系统之一,为用户提供了强大的隐私保护和匿名性保障。然而,网站指纹攻击(Website Fingerprinting attack,WF)作为一种新兴的流量分析技术,对Tor网络的匿名性构成严重威胁。本文系统性回顾近年来Tor网络的网站指纹攻击研究进展,首先阐述其基本概念与威胁模型架构,进而重点剖析现有攻击方法的技术原理、实现机制及局限性,同时介绍了典型的网站指纹防御机制。为验证技术有效性,本文基于对应数据集开展实验验证:一是对各类攻击方法对比验证,分析其准确率表现;二是通过典型攻击方法验证防御机制的实际效能。最后,总结现有研究存在的不足,进而对未来研究方向进行展望。
As one of the currently popular anonymous communication systems
the Tor network offers robust privacy protection and anonymity guarantees to users. Nevertheless
website fingerprinting attacks
an emerging traffic analysis technique
pose a significant threat to Tor’s anonymity. This paper systematically reviews recent research progress in website fingerprinting attacks on the Tor network. It first elaborates on basic concepts and the architecture of threat models
then focuses on analyzing technical principles
implementation mechanisms
and limitations of existing attack methods. It also introduces typical website fingerprinting defense mechanisms. To verify the effectiveness of these technologies
the paper conducts experimental validations based on corresponding datasets: first
comparative verification of various attack methods and analysis of their accuracy performance; second
verification of the actual effectiveness of defense mechanisms through typical attack methods. Finally
it summarizes shortcomings of existing research and provides prospects for future research directions.
DINGLEDINE R , MATHEWSON N , SYVERSON P F . Tor: The second-generation onion router [C ] // Proceedings of the 13th USENIX Security Symposium . San Diego : USENIX , 2004 : 1 - 18 .
杨宏宇 , 宋成瑜 , 王朋 , 等 . 洋葱路由器网站指纹攻击与防御研究综述 [J ] . 电子与信息学报 , 2024 , 46 ( 9 ): 3474 - 3489 .
HAYES J , DANEZIS G . K-fingerprinting: A robust scalable website fingerprinting technique [C ] // Proceedings of the 25th USENIX Security Symposium . Austin : USENIX , 2016 : 1187 - 1203 .
SIRINAM P , IMANI M , JUAREZ M , et al . Deep fingerprinting: Undermining website fingerprinting defenses with deep learning [C ] // Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security . New York : ACM , 2018 : 1928 - 1943 .
BHAT S , LU D , KWON A , et al . Var-CNN: A data-efficient website fingerprinting attack based on deep learning [EB/OL ] . ( 2018-12-08 )[ 2024-05-05 ] . https://arXiv.org/abs/1802.10215 https://arXiv.org/abs/1802.10215 .
BAHRAMALI A , BOZORGI A , HOUMANSADR A . Realistic website fingerprinting by augmenting network traces [C ] // Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security . New York : ACM , 2023 : 1035 - 1049 .
SHEN M , JI K X , GAO Z B , et al . Subverting website fingerprinting defenses with robust traffic representation [C ] // Proceedings of the 32nd USENIX Security Symposium . Anaheim : USENIX , 2023 : 607 - 624 .
张静茜 , 李腾耀 , 涂宇宽 , 等 . 抗扰动的网站指纹鲁棒识别方法 [J ] . 网络与信息安全学报 , 2024 , 10 ( 6 ): 137 - 150 .
JUAREZ M , AFROZ S , ACAR G , et al . A critical evaluation of website fingerprinting attacks [C ] // Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security . New York : ACM , 2014 : 263 - 274 .
XU Y X , WANG T , LI Q , et al . A multi-tab website fingerprinting attack [C ] // Proceedings of the 34th Annual Computer Security Applications Conference . New York : ACM , 2018 : 327 - 341 .
蔡满春 , 席荣康 , 朱懿 , 等 . 一种Tor网站多网页多标签指纹识别方法 [J ] . 信息网络安全 , 2024 , 24 ( 7 ): 1088 - 1097 .
GUAN Z , XIONG G , GOU G P , et al . BAPM: Block attention profiling model for multi-tab website fingerprinting attacks on tor [C ] // Proceedings of the 37th Annual Computer Security Applications Conference . New York : ACM , 2021 : 248 - 259 .
JIN Z X , LU T B , LUO S , et al . Transformer-based model for multi-tab website fingerprinting attack [C ] // Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security . New York : ACM , 2023 : 1050 - 1064 .
DENG X H , YIN Q L , LIU Z T , et al . Robust multi-tab website fingerprinting attacks in the wild [C ] // 2023 IEEE Symposium on Security and Privacy (SP) . Piscataway : IEEE , 2023 : 1005 - 1022 .
WANG T , GOLDBERG I . Walkie-t alkie: An efficient defense against passive website fingerprinting attacks [C ] // Proceedings of the 26th USENIX Security Symposium . Vancouver : USENIX , 2017 : 1375 - 1390 .
HOU C S , GOU G P , SHI J Z , et al . WF-GAN: Fighting back against website fingerprinting attack using adversarial learning [C ] // 2020 IEEE Symposium on Computers and Communications (ISCC) . Piscataway : IEEE , 2020 : 1 - 7 .
DE LA CADENA W , MITSEVA A , HILLER J , et al . TrafficSliver: Fighting website fingerprinting attacks with traffic splitting [C ] // Proceedings of the 2020 ACM SIGSAC Conference on Computer and Communications Security . New York : ACM , 2020 : 1971 - 1985 .
0
浏览量
0
下载量
0
CSCD
关联资源
相关文章
相关作者
相关机构
京公网安备11010802024621