English
Related papers

Related papers: Measuring Information Leakage in Website Fingerpri…

200 papers

Components of machine learning systems are not (yet) perceived as security hotspots. Secure coding practices, such as ensuring that no execution paths depend on confidential inputs, have not yet been adopted by ML developers. We initiate…

Cryptography and Security · Computer Science 2020-11-04 Zhen Sun , Roei Schuster , Vitaly Shmatikov

Tor is the most widely used anonymity network, currently serving millions of users each day. However, there is no access control in place for all these users, leaving the network vulnerable to botnet abuse and attacks. For example,…

Cryptography and Security · Computer Science 2017-12-19 Zhuotao Liu , Yushan Liu , Philipp Winter , Prateek Mittal , Yih-Chun Hu

Tor users are vulnerable to deanonymization by an adversary that can observe some Tor relays or some parts of the network. We demonstrate that previous network-aware path-selection algorithms that propose to solve this problem are…

Cryptography and Security · Computer Science 2017-01-30 Aaron Johnson , Rob Jansen , Aaron D. Jaggard , Joan Feigenbaum , Paul Syverson

Motivated by the effectiveness of correlation attacks against Tor, the censorship arms race, and observations of malicious relays in Tor, we propose that Tor users capture their trust in network elements using probability distributions over…

Cryptography and Security · Computer Science 2014-06-16 Aaron D. Jaggard , Aaron Johnson , Paul Syverson , Joan Feigenbaum

Modern browsers give access to several attributes that can be collected to form a browser fingerprint. Although browser fingerprints have primarily been studied as a web tracking tool, they can contribute to improve the current state of web…

Cryptography and Security · Computer Science 2021-10-05 Nampoina Andriamilanto , Tristan Allard , Gaëtan Le Guelvouit , Alexandre Garel

Internet users are vulnerable to privacy attacks despite the use of encryption. Webpage fingerprinting, an attack that analyzes encrypted traffic, can identify the webpages visited by a user in a given website. Recent research works have…

Cryptography and Security · Computer Science 2022-05-31 Gargi Mitra , Prasanna Karthik Vairam , Sandip Saha , Nitin Chandrachoodan , V. Kamakoti

Tor, a widely utilized privacy network, enables anonymous communication but is vulnerable to flow correlation attacks that deanonymize users by correlating traffic patterns from Tor's ingress and egress segments. Various defenses have been…

Cryptography and Security · Computer Science 2025-10-21 Minjae Seo , Myoungsung You , Jaehan Kim , Taejune Park , Seungwon Shin , Jinwoo Kim

Modern HTTPS mechanisms such as Encrypted Client Hello (ECH) and encrypted DNS improve privacy but remain vulnerable to website fingerprinting (WF) attacks, where adversaries infer visited sites from encrypted traffic patterns. Existing WF…

Cryptography and Security · Computer Science 2025-12-22 Yifei Cheng , Yujia Zhu , Baiyang Li , Xinhao Deng , Yitong Cai , Yaochen Ren , Qingyun Liu

The state of security demands innovative solutions to defend against targeted attacks due to the growing sophistication of cyber threats. This study explores the nefarious tactic known as "watering hole attacks using supervised neural…

Cryptography and Security · Computer Science 2024-02-14 Mst. Nishita Aktar , Sornali Akter , Md. Nusaim Islam Saad , Jakir Hosen Jisun , Kh. Mustafizur Rahman , Md. Nazmus Sakib

To protect users' privacy, legislators have regulated the usage of tracking technologies, mandating the acquisition of users' consent before collecting data. Consequently, websites started showing more and more consent management modules --…

Cryptography and Security · Computer Science 2022-09-14 Nikhil Jha , Martino Trevisan , Luca Vassio , Marco Mellia

We consider information leakage to the user in private information retrieval (PIR) systems. Information leakage can be measured in terms of individual message leakage or total leakage. Individual message leakage, or simply individual…

Information Theory · Computer Science 2020-03-17 Tao Guo , Ruida Zhou , Chao Tian

As large language models are increasingly deployed in sensitive environments, fingerprinting attacks pose significant privacy and security risks. We present a study of LLM fingerprinting from both offensive and defensive perspectives. Our…

Cryptography and Security · Computer Science 2025-08-13 Kevin Kurian , Ethan Holland , Sean Oesch

Dark web crawling is a complex process that involves specific methodologies and techniques to navigate the Tor network and extract data from hidden services. This study proposes a general dark web crawler designed to extract pages handling…

Cryptography and Security · Computer Science 2024-05-13 Daniel De Pascale , Giuseppe Cascavilla , Damian A. Tamburri , Willem-Jan Van Den Heuvel

One of the most important obligations of privacy-enhancing technologies is to bring confidentiality and privacy to users' browsing activities on the Internet. The website fingerprinting attack enables a local passive eavesdropper to predict…

Cryptography and Security · Computer Science 2021-04-14 Amir Mahdi Sadeghzadeh , Behrad Tajali , Rasool Jalili

On-line privacy is of major public concern. Unfortunately, for the average consumer, there is no simple mechanism to browse the Internet privately on multiple devices. Most available Internet privacy mechanisms are either expensive, not…

Computers and Society · Computer Science 2018-06-08 Adrian Barberis , Danny Radosevich , Wyatt Emery , Mike Borowczak

Anonymous data collection systems allow users to contribute the data necessary to build services and applications while preserving their privacy. Anonymity, however, can be abused by malicious agents aiming to subvert or to sabotage the…

Cryptography and Security · Computer Science 2018-12-20 Alex Catarineu , Philipp Claßen , Konark Modi , Josep M. Pujol

Online voting enables individuals to participate in elections remotely, offering greater efficiency and accessibility in both governmental and organizational settings. As this method gains popularity, ensuring the security of online voting…

Cryptography and Security · Computer Science 2025-09-22 Anastasiia Belousova , Francesco Marchiori , Mauro Conti

Stateful and stateless web tracking gathered much attention in the last decade, however they were always measured separately. To the best of our knowledge, our study is the first to detect and measure cookie respawning with browser and…

Cryptography and Security · Computer Science 2021-05-11 Imane Fouad , Cristiana Santos , Arnaud Legout , Nataliia Bielova

We present new analytic techniques for inferring HTTP semantics from passive observations of HTTPS that can infer the value of important fields including the status-code, Content-Type, and Server, and the presence or absence of several…

Cryptography and Security · Computer Science 2018-05-30 Blake Anderson , Andrew Chi , Scott Dunlop , David McGrew

Adversarial attacks by malicious users that threaten the safety of large language models (LLMs) can be viewed as attempts to infer a target property $T$ that is unknown when an instruction is issued, and becomes knowable only after the…

Cryptography and Security · Computer Science 2025-10-21 Masahiro Kaneko , Timothy Baldwin