loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
2005 IEEE Symposium on Security and Privacy (S&P'05)
Low-Cost Traffic Analysis of Tor
Oakland, California
May 08-May 11
ISBN: 0-7695-2339-0
Steven J. Murdoch, University of Cambridge, United Kingdom
George Danezis, University of Cambridge, United Kingdom
Tor is the second generation Onion Router, supporting the anonymous transport of TCP streams over the Internet. Its low latency makes it very suitable for common tasks, such as web browsing, but insecure against traffic-analysis attacks by a global passive adversary. We present new traffic-analysis techniques that allow adversaries with only a partial view of the network to infer which nodes are being used to relay the anonymous streams and therefore greatly reduce the anonymity provided by Tor. Furthermore, we show that otherwise unrelated streams can be linked back to the same initiator. Our attack is feasible for the adversary anticipated by the Tor designers. Our theoretical attacks are backed up by experiments performed on the deployed, albeit experimental, Tor network. Our techniques should also be applicable to any low latency anonymous network. These attacks highlight the relationship between the field of traffic-analysis and more traditional computer security issues, such as covert channel analysis. Our research also highlights that the inability to directly observe network links does not prevent an attacker from performing traffic-analysis: the adversary can use the anonymising network as an oracle to infer the traffic load on remote nodes in order to perform traffic-analysis.
Citation:
Steven J. Murdoch, George Danezis, "Low-Cost Traffic Analysis of Tor," sp, pp.183-195, 2005 IEEE Symposium on Security and Privacy (S&P'05), 2005
Usage of this product signifies your acceptance of the Terms of Use.