On Effectiveness of Link Padding for Statistical Traffic Analysis Attacks

نویسندگان

  • Xinwen Fu
  • Bryan Graham
  • Riccardo Bettati
  • Wei Zhao
چکیده

Traffic analysis attacks aim at deriving mission critical information from the analysis of the traffic transmitted over a network. Countermeasures for such attacks are usually realized by properly “padding” the payload traffic so that the statistics of the overall traffic become significantly different from that of the payload traffic. In this paper, we propose a analytical framework for traffic analysis attacks based on statistical pattern recognition techniques. We study the effectiveness of countermeasures for traffic analysis attacks within our proposed framework. Two basic countermeasure strategies are (a) to pad the traffic with constant interarrival times of packets (CIT) or (b) to pad the traffic with variable interarrival times (VIT). Our experiments show that CIT countermeasures fail when the adversary uses sample variance or sample entropy of packet interarrival times for statistical analysis. On the other hand, VIT countermeasures are effective regardless of which sample statistics are used by the adversary. These observations are validated by analysis of detection rates based on sample distributions of packet interarrival times.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

On Countermeasures to Traffic Analysis Attacks

AbsfrucfThis paper makes three contributions. First, we propose Shannon’s perfect secrecy theory as a foundation for developing countermeasures to traffic analysis attacks on information security systems. A system violating the perfect secrecy conditions can leak mission critical information. Second, we suggest statistical pattern recognition as a fundamental technology to test an information s...

متن کامل

Empirical and Theoretical Evaluation of Active Probing Attacks and Their Countermeasures

A variety of remote sensing attacks allow adversaries to break flow confidentiality and gather mission-critical information in distributed systems. Such attacks are easily supplemented by active probing attacks, where additional workload (e.g., ping packets) is injected into the victim system. This paper presents statistical pattern recognition as a fundamental technology to evaluate the effect...

متن کامل

A Comparative Study of Traffic Padding Schemes to Prevent Traffic Analysis in Sensor Networks

Wireless networks are envisioned to consist of large number of inexpensive and small nodes with sensing, data processing, and communication capabilities which are densely deployed in a region of interest and collaborate to accomplish a common task. One main challenge in design of these networks is their vulnerability to security attacks. However, there are various techniques exists in the liter...

متن کامل

ON TRAFFIC ANALYSIS ATTACKS AND COUNTERMEASURES A Dissertation by

On Traffic Analysis Attacks and Countermeasures. (December 2005) Xinwen Fu, B.S., Xi’an Jiaotong University; M.S., University of Science and Technology of China Co-Chairs of Advisory Committee: Dr. Wei Zhao Dr. Riccardo Bettati Security and privacy have gained more and more attention with the rapid growth and public acceptance of the Internet as a means of communication and information dissemin...

متن کامل

Design and Analysis of an IP-Layer Anonymizing Infrastructure

This paper describes an IP-layer anonymizing infrastructure , called ANON, which allows server addresses to be hidden from clients and vice versa. In providing address anonymity, ANON uses a network resident set of IP-layer anonymizing forwarders that can forward IP packets with nested encryption and decryption applied to their source and destination addresses. To prevent adversaries from compr...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2003