Browser Fingerprinting from Coarse Traffic Summaries: Techniques and Implications
Browser Fingerprinting from Coarse Traffic Summaries: Techniques and Implications
复制标题
粗略流量摘要中的浏览器指纹识别:技术和含义
DOI:
--
复制
发表时间:
2009
期刊:
影响因子:
--
通讯作者:
M. Reiter
中科院分区:
文献类型:
--
作者:
T. Yen;Xin Huang;F. Monrose;M. Reiter
We demonstrate that the browser implementation used at a host can be passively identified with significant precision and recall, using only coarse summaries of web traffic to and from that host. Our techniques utilize connection records containing only the source and destination addresses and ports, packet and byte counts, and the start and end times of each connection. We additionally provide two applications of browser identification. First, we show how to extend a network intrusion detection system to detect a broader range of malware. Second, we demonstrate the consequences of web browser identification to the deanonymization of web sites in flow records that have been anonymized.