Details of Research Outputs

Status已发表Published
TitleNovel packet size-based covert channel attacks against anonymizer
Creator
Date Issued2013
Source PublicationIEEE Transactions on Computers
ISSN0018-9340 ; 1557-9956
Volume62Issue:12Pages:2411-2426
Abstract

In this paper, we present a study on the anonymity of Anonymizer, a well-known commercial anonymous communication system. We discovered the architecture of Anonymizer and found that the size of web packets in the Anonymizer network can be very dynamic at the client. Motivated by this finding, we investigated a class of novel packet size-based covert channel attacks against Anonymizer. The attacker between a website and the Anonymizer server can manipulate the web packet size and embed secret signal symbols into the target traffic. An accomplice at the user side can sniff the traffic and recognize the secret signal. In this way, the anonymity provided by Anonymizer is compromised. We developed intelligent and robust algorithms to cope with the packet size distortion incurred by Anonymizer and Internet. We developed techniques to make the attack harder to detect: 1) We pick up right packets of web objects to manipulate to preserve the regularity of the TCP packet size dynamics, which can be measured by the Hurst parameter; 2) We adopt the Monte Carlo sampling technique to preserve the distribution of the web packet size despite manipulation. We have implemented the attack over Anonymizer and conducted extensive analytical and experimental evaluations. It is observed that the attack is highly efficient and requires only tens of packets to compromise the anonymous web surfing via Anonymizer. The experimental results are consistent with our theoretical analysis. © 2013 IEEE.

KeywordAnonymizer TCP dynamics Watermark
DOI10.1109/TC.2012.169
URLView source
Indexed BySCIE
Language英语English
WOS Research AreaComputer Science ; Engineering
WOS SubjectComputer Science, Hardware & Architecture ; Engineering, Electrical & Electronic
WOS IDWOS:000327409300006
Citation statistics
Cited Times:22[WOS]   [WOS Record]     [Related Records in WOS]
Document TypeJournal article
Identifierhttp://repository.uic.edu.cn/handle/39GCC9TT/1893
CollectionResearch outside affiliated institution
Affiliation
1.School of Computer Science and Engineering, Southeast University, Nanjing 211189, China
2.Department of Computer Science, University of Massachusetts Lowell, Lowell, MA 01854, United States
3.Department of Computer Science, City University of Hong Kong, Kowloon, Hong Kong, Tat Chee Avenue, Hong Kong, China
4.Department of Computer and Information Sciences, Towson University, Towson, MD 21252, United States
5.Department of Computer Science and Engineering, Ohio State University, Columbus, OH 43210, United States
Recommended Citation
GB/T 7714
Ling, Zhen,Fu, Xinwen,Jia, Weijiaet al. Novel packet size-based covert channel attacks against anonymizer[J]. IEEE Transactions on Computers, 2013, 62(12): 2411-2426.
APA Ling, Zhen, Fu, Xinwen, Jia, Weijia, Yu, Wei, Xuan, Dong, & Luo, Junzhou. (2013). Novel packet size-based covert channel attacks against anonymizer. IEEE Transactions on Computers, 62(12), 2411-2426.
MLA Ling, Zhen,et al."Novel packet size-based covert channel attacks against anonymizer". IEEE Transactions on Computers 62.12(2013): 2411-2426.
Files in This Item:
There are no files associated with this item.
Related Services
Usage statistics
Google Scholar
Similar articles in Google Scholar
[Ling, Zhen]'s Articles
[Fu, Xinwen]'s Articles
[Jia, Weijia]'s Articles
Baidu academic
Similar articles in Baidu academic
[Ling, Zhen]'s Articles
[Fu, Xinwen]'s Articles
[Jia, Weijia]'s Articles
Bing Scholar
Similar articles in Bing Scholar
[Ling, Zhen]'s Articles
[Fu, Xinwen]'s Articles
[Jia, Weijia]'s Articles
Terms of Use
No data!
Social Bookmark/Share
All comments (0)
No comment.
 

Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.