PST: a More Practical Adversarial Learning-based Defense Against Website Fingerprinting

被引:1
|
作者
Jiang, Minghao [1 ,2 ]
Wang, Yong [3 ]
Gou, Gaopeng [1 ,2 ]
Cai, Wei [1 ,2 ]
Xiong, Gang [1 ,2 ]
Shi, Junzheng [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
[3] Coordinat Ctr China, Natl Comp Network Emergency Response Tech Team, Hong Kong, Peoples R China
关键词
Anonymity Communication; Privacy; Website Fingerprinting attack and defense; Deep Learning; Adversarial Machine Learning;
D O I
10.1109/GLOBECOM42002.2020.9322307
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
To prevent serious privacy leakage from website fingerprinting (WF) attacks, many traditional or adversarial WF defenses have been released. However, traditional WF defenses such as Walkie-Talkie (W-T) still generate patterns that might be captured by the deep learning (DL) based WF attacks, which are not effective. Adversarial perturbation based WF defenses better confuse WF attacks, but their requirements for the entire original traffic trace and perturbating any points including historical packets or cells of the network traffic are not practical. To deal with the effectiveness and practicality issues of existing defenses, we proposed a novel WF defense in this paper. called PST. Given a few past bursts of a trace as input, PST Predicts subsequent fuzzy bursts with a neural network, then Searches small but effective adversarial perturbation directions based on observed and predicted bursts, and finally Transfers the perturbation directions to the remaining bursts. Our experimental results over a public closed-world dataset demonstrate that PST can successfully break the network traffic pattern and achieve a high evasion rate of 87.6%, beating W-T by more than 31.59% at the same bandwidth overhead, with only observing 10 transferred bursts. Moreover, our defense adapts to WF attacks dynamically, which could be retrained or updated.
引用
收藏
页数:6
相关论文
共 50 条
  • [31] BiMorphing: A Bi-Directional Bursting Defense against Website Fingerprinting Attacks
    Al-Naami, Khaled
    El-Ghamry, Amir
    Islam, Md Shihabul
    Khan, Latifur
    Thuraisingham, Bhavani
    Hamlen, Kevin W.
    Alrahmawy, Mohammed
    Rashad, Magdi Z.
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (02) : 505 - 517
  • [32] Walkie-Talkie: An Efficient Defense Against Passive Website Fingerprinting Attacks
    Wang, Tao
    Goldberg, Ian
    PROCEEDINGS OF THE 26TH USENIX SECURITY SYMPOSIUM (USENIX SECURITY '17), 2017, : 1375 - 1390
  • [33] KimeraPAD: A Novel Low-Overhead Real-Time Defense Against Website Fingerprinting Attacks Based on Deep Reinforcement Learning
    Jiang, Meiyi
    Cui, Baojiang
    Fu, Junsong
    Wang, Tao
    Wang, Ziqi
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (03): : 2944 - 2961
  • [34] Adversarial Training Against Adversarial Attacks for Machine Learning-Based Intrusion Detection Systems
    Haroon, Muhammad Shahzad
    Ali, Husnain Mansoor
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 73 (02): : 3513 - 3527
  • [35] Reinforcement learning-based secure training for adversarial defense in graph neural networks
    An, Dongdong
    Yang, Yi
    Gao, Xin
    Qi, Hongda
    Yang, Yang
    Ye, Xin
    Li, Maozhen
    Zhao, Qin
    NEUROCOMPUTING, 2025, 630
  • [36] Wireless Universal Adversarial Attack and Defense for Deep Learning-Based Modulation Classification
    Wang, Zhaowei
    Liu, Weicheng
    Wang, Hui-Ming
    IEEE COMMUNICATIONS LETTERS, 2024, 28 (03) : 582 - 586
  • [37] Deep Reinforcement Learning-Based Adversarial Attack and Defense in Industrial Control Systems
    Kim, Mun-Suk
    MATHEMATICS, 2024, 12 (24)
  • [38] Defense Against Adversarial Attacks in Deep Learning
    Li, Yuancheng
    Wang, Yimeng
    APPLIED SCIENCES-BASEL, 2019, 9 (01):
  • [39] Learning-Based Defense Against Malicious Unmanned Aerial Vehicles
    Min, Minghui
    Xiao, Liang
    Xu, Dongjin
    Huang, Lianfen
    Peng, Mugen
    2018 IEEE 87TH VEHICULAR TECHNOLOGY CONFERENCE (VTC SPRING), 2018,
  • [40] Def-IDS: An Ensemble Defense Mechanism Against Adversarial Attacks for Deep Learning-based Network Intrusion Detection
    Wang, Jianyu
    Pan, Jianli
    AlQerm, Ismail
    Liu, Yuanni
    30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,