WF-GAN: Fighting Back Against Website Fingerprinting Attack Using Adversarial Learning

被引:6
|
作者
Hou, Chengshang [1 ,2 ]
Gou, Gaopeng [1 ,2 ]
Shi, Junzheng [1 ,2 ]
Fu, Peipei [1 ,2 ]
Xiong, Gang [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
network security; privacy; adversarial learning;
D O I
10.1109/iscc50000.2020.9219593
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Website Fingerprinting (WF) attack is an side-channel attack which aims at encrypted web traffic. WF attackers recognize encrypted website traffic through constructing fingerprinting for each website using the flow-based features extracted from encrypted traffic. WF defense typically aims at modifying the features of the encrypted websites. However, those countermeasures either cause high overhead or fail to counter the subsequent WF attacks. Especially, the newest WF attacks, which are based on deep neural network, is able to classify the defended traffic by directly learning from the labeled defended traffic. In this paper, we propose an novel defense through making use of the trick that machine learning models are vulnerable to adversarial exmaples. We design WF-GAN, a GAN with an additional WF classifier component, to generate adversarial examples for WF classifiers through adversarial learning. As the website set is divided into source and target website, WF-GAN are trained to map websites features from source set to adversarial examples and make adversarial examples more similar to the website features in the target set. The experimental result shows that WF-GAN achieves 90% success rate with at most 15% overhead for untargeted defense, which outperforms previous defense. In addition, adversarial examples based defense support targeted defense, which is not support by traditional defense. The result shows that WF-GAN achieves over 90% targeted defense success rate when the target websites set is twice as many as the source website set.
引用
收藏
页码:261 / 267
页数:7
相关论文
共 50 条
  • [1] Attack versus Attack: Toward Adversarial Example Defend Website Fingerprinting Attack
    Hou, Chengshang
    Shi, Junzheng
    Cui, Mingxin
    Yang, Qingya
    2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 766 - 773
  • [2] Investigation of the website fingerprinting attack against Tor
    Armes, Meghan E.
    McFail, Michael L.
    Ezekiel, Soundararajan
    WMSCI 2007 : 11TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL V, POST CONFERENCE ISSUE, PROCEEDINGS, 2007, : 214 - 217
  • [3] DFD: Adversarial Learning-based Approach to Defend Against Website Fingerprinting
    Abusnaina, Ahmed
    Jang, Rhongho
    Khormali, Aminollah
    Nyang, DaeHun
    Mohaisen, David
    IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2020, : 2459 - 2468
  • [4] PST: a More Practical Adversarial Learning-based Defense Against Website Fingerprinting
    Jiang, Minghao
    Wang, Yong
    Gou, Gaopeng
    Cai, Wei
    Xiong, Gang
    Shi, Junzheng
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [5] Mockingbird: Defending Against Deep-Learning-Based Website Fingerprinting Attacks With Adversarial Traces
    Rahman, Mohammad Saidur
    Imani, Mohsen
    Mathews, Nate
    Wright, Matthew
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2021, 16 (16) : 1594 - 1609
  • [6] Training delay effect on the website fingerprinting attack against tor
    McFail, Michael L.
    Armes, Meghan E.
    Ezekiel, Soundararajan
    WMSCI 2007 : 11TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL V, POST CONFERENCE ISSUE, PROCEEDINGS, 2007, : 233 - 237
  • [7] Website Fingerprinting Attack Mitigation using Traffic Morphing
    Chan-Tin, Eric
    Kim, Taejoon
    Kim, Jinoh
    2018 IEEE 38TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS), 2018, : 1575 - 1578
  • [8] snWF: Website Fingerprinting Attack by Ensembling the Snapshot of Deep Learning
    Wang, Yanbin
    Xu, Haitao
    Guo, Zhenhao
    Qin, Zhan
    Ren, Kui
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 1214 - 1226
  • [9] Adversarial attacks against profile HMM website fingerprinting detection model
    Liu, Xiaolei
    Zhuo, Zhongliu
    Du, Xiaojiang
    Zhang, Xiaosong
    Zhu, Qingxin
    Guizani, Mohsen
    COGNITIVE SYSTEMS RESEARCH, 2019, 54 : 83 - 89
  • [10] A Novel Active Website Fingerprinting Attack against Tor Anonymous System
    He, Gaofeng
    Yang, Ming
    Gu, Xiaodan
    Luo, Junzhou
    Ma, Yuanyuan
    PROCEEDINGS OF THE 2014 IEEE 18TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN (CSCWD), 2014, : 112 - 117