Privacy Concerns From Single-Word Search Query Leakage From Web Browsers Through DNS

Privacy Concerns From Single-Word Search Query Leakage From Web Browsers Through DNS
复制标题

Web 浏览器通过 DNS 泄露单字搜索查询的隐私问题

DOI:
10.1109/lnet.2021.3117600
复制
发表时间:
2022
期刊:
IEEE Networking Letters
影响因子:
--
通讯作者:
Tode Hideki
Tode Hideki
中科院分区:
--
文献类型:
--
作者:
Isobe Katsuki;Kondo Daishi;Tode Hideki

文献摘要

相似文献

在某些操作系统(OS)上运行的某些Web浏览器指定将输入到搜索栏中的单个单词搜索查询作为包括该单词的DNS请求发送到域名系统(DNS)的递归解析器。这种行为对于用户来说是意想不到的,并通过单字搜索查询泄露引发隐私问题。我们提出我们的调查期间,这种行为发生的条件。通过分析在递归解析器捕获的DNS流量,我们证明了相当数量的查询被泄露,个人或组织的利益可以通过被动窃听者推断。
Some Web browsers working on certain operating systems (OSs) specify that a single-word search query entered into the search bar be sent to the recursive resolver of the domain name system (DNS) as a DNS request that includes the word. Such behavior is unexpected for users and induces privacy concerns through single-word search query leakage. We present our survey on the conditions during which this behavior occurs. By analyzing the DNS traffic captured at the recursive resolvers, we demonstrate that a considerable number of queries are leaked and the interests of individuals or organizations can be inferred through passive eavesdroppers.