arXiv · 2002.06495
Blind Adversarial Network Perturbations
Abstract
Deep Neural Networks (DNNs) are commonly used for various traffic analysis problems, such as website fingerprinting and flow correlation, as they outperform traditional (e.g., statistical) techniques by large margins. However, deep neural networks are known to be vulnerable to adversarial examples: adversarial inputs to the model that get labeled incorrectly by the model due to small adversarial perturbations. In this paper, for the first time, we show that an adversary can defeat DNN-based traffic analysis techniques by applying \emph{adversarial perturbations} on the patterns of \emph{live} network traffic.
Explore related subjects
Keep this discovery
Milad Nasr, Alireza Bahramali, Amir Houmansadr. 2020-02-16. Blind Adversarial Network Perturbations. https://arxiv.org/abs/2002.06495
Cite the original work for its findings. Save a collection to share your selection of sources.