The web browser factor in traffic analysis attacks

被引:6
|
作者
Zhioua, Sami [1 ]
机构
[1] King Fahd Univ Petr & Minerals, Informat & Comp Sci Dept, Al Dhahran 31261, Saudi Arabia
关键词
online privacy; anonymity protocols; traffic analysis; website fingerprinting; INTERNET; PRIVACY;
D O I
10.1002/sec.1338
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Website fingerprinting is a known type of traffic analysis attacks that aims to identify which websites are visited in encrypted traffic traces. Recent work showed that some classifiers can successfully identify 90% of visited websites. Because web browsers use different rendering engines and networking application program interfaces (APIs), they tend to resist differently to website fingerprinting attacks. In this paper, we study to which extent popular web browsers can resist such attacks by analyzing the shape of their network traffic when fetching websites. To this end, five fine-grained measures are used to point out very subtle differences in the network traffic of each web browser. Empirical analysis showed that, among six studied web browsers (Chrome, Firefox, Internet Explorer, Safari, Opera, and Tor Browser), Opera and Safari offer the highest resistance to website fingerprinting. Because most of existing fingerprinting techniques have been evaluated using Firefox web browser, we expect the accuracy results of existing work to be reduced in case Opera or Safari browser is used. Copyright (C) 2015 John Wiley & Sons, Ltd.
引用
收藏
页码:4227 / 4241
页数:15
相关论文
共 50 条
  • [41] Validation of HTTP Response Time From Network Traffic as an Alternative to Web Browser Instrumentation
    Lopez, Carlos
    Morato, Daniel
    Magana, Eduardo
    Izal, Mikel
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (02): : 976 - 990
  • [42] Active traffic analysis attacks and countermeasures
    Fu, XW
    Graham, B
    Bettati, R
    Zhao, W
    [J]. 2003 INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND MOBILE COMPUTING, PROCEEDINGS, 2003, : 31 - 39
  • [43] OPA Browser: A Web Browser for Cellular Phone Users
    Arase, Yuki
    Hara, Takahiro
    Uemukai, Toshiaki
    Nishio, Shojiro
    [J]. UIST 2007: PROCEEDINGS OF THE 20TH ANNUAL ACM SYMPOSIUM ON USER INTERFACE SOFTWARE AND TECHNOLOGY, 2007, : 71 - 80
  • [44] Browser-based attacks on Tor
    Abbott, Timothy G.
    Lai, Katherine J.
    Lieberman, Michael R.
    Price, Eric C.
    [J]. PRIVACY ENHANCING TECHNOLOGIES, 2007, 4776 : 184 - 199
  • [45] Stopping DNS Rebinding Attacks in the Browser
    Hazhirpasand, Mohammadreza
    Ebrahim, Arash Ale
    Nierstrasz, Oscar
    [J]. ICISSP: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2021, : 596 - 603
  • [46] Web Browser Data Collection and User Awareness Regarding Web Browser Data Exposure
    Hrgarek, Luka
    Welzer, Tatjana
    Holbl, Marko
    [J]. CENTRAL EUROPEAN CONFERENCE ON INFORMATION AND INTELLIGENT SYSTEMS: PROCEEDINGS ARCHIVE 2017, 2017, : 109 - 113
  • [47] Behavior Analysis of Web Service Attacks
    Ghourabi, Abdallah
    Abbes, Tarek
    Bouhoula, Adel
    [J]. ICT SYSTEMS SECURITY AND PRIVACY PROTECTION, IFIP TC 11 INTERNATIONAL CONFERENCE, SEC 2014, 2014, 428 : 366 - 379
  • [48] Analysis of the Attacks on Saudi Web Companies
    Almarri, Deema
    Alhazza, Munaira
    Aljamea, Moudhi
    Mahmud, Maqsood
    [J]. 2018 21ST SAUDI COMPUTER SOCIETY NATIONAL COMPUTER CONFERENCE (NCC), 2018,
  • [49] What is in a Web View? An Analysis of Progressive Web App Features When the Means of Web Access is not a Web Browser
    Steiner, Thomas
    [J]. COMPANION PROCEEDINGS OF THE WORLD WIDE WEB CONFERENCE 2018 (WWW 2018), 2018, : 789 - 796
  • [50] Browserprint: An Analysis of the Impact of Browser Features on Fingerprintability and Web Privacy
    Akhavani, Seyed Ali
    Jueckstock, Jordan
    Su, Junhua
    Kapravelos, Alexandros
    Kirda, Engin
    Lu, Long
    [J]. INFORMATION SECURITY (ISC 2021), 2021, 13118 : 161 - 176