POSTER: How Dangerous is My Click? Boosting Website Fingerprinting by Considering Sequences of Webpages

2Citations
Citations of this article
7Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Website fingerprinting (WFP) is a special case of traffic analysis, where a passive attacker infers information about the content of encrypted and anonymized connections by observing patterns of data flows. Although modern WFP attacks pose a serious threat to online privacy of users, including Tor users, they usually aim to detect single pages only. By ignoring the browsing behavior of users, the attacker excludes valuable information: users visit multiple pages of a single website consecutively, e.g., by following links. In this paper, we propose two novel methods that can take advantage of the consecutive visits of multiple pages to detect websites. We show that two up to three clicks within a site allow attackers to boost the accuracy by more than 20% and to dramatically increase the threat to users' privacy. We argue that WFP defenses have to consider this new dimension of the attack surface.

Cite

CITATION STYLE

APA

Mitseva, A., Pennekamp, J., Lohmöller, J., Ziemann, T., Hoerchner, C., Wehrle, K., & Panchenko, A. (2021). POSTER: How Dangerous is My Click? Boosting Website Fingerprinting by Considering Sequences of Webpages. In Proceedings of the ACM Conference on Computer and Communications Security (pp. 2411–2413). Association for Computing Machinery. https://doi.org/10.1145/3460120.3485347

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free