Joint Alignment Networks For Few-Shot Website Fingerprinting Attack
Website fingerprinting (WF) attacks based on deep neural networks pose a significant threat to the privacy of anonymous network users. However, training a deep WF model requires many labeled traces, which can be labor-intensive and time-consuming, and models trained on the originally collected trace...
Gespeichert in:
Veröffentlicht in: | Computer journal 2024-06, Vol.67 (6), p.2331-2345 |
---|---|
Hauptverfasser: | , , , , |
Format: | Artikel |
Sprache: | eng |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | 2345 |
---|---|
container_issue | 6 |
container_start_page | 2331 |
container_title | Computer journal |
container_volume | 67 |
creator | Zhou, Qiang Wang, Liangmin Zhu, Huijuan Lu, Tong Song, Heping |
description | Website fingerprinting (WF) attacks based on deep neural networks pose a significant threat to the privacy of anonymous network users. However, training a deep WF model requires many labeled traces, which can be labor-intensive and time-consuming, and models trained on the originally collected traces cannot be directly used for the classification of newly collected traces due to the concept drift caused by the time gap in the data collection. Few-shot WF attacks are proposed for using the originally and few-shot newly collected labeled traces to facilitate anonymous trace classification. However, existing few-shot WF attacks ignore the fine-grained feature alignment to eliminate the concept drift in the model training, which fails to fully use the knowledge of labeled traces. We propose a novel few-shot WF attack called Joint Alignment Networks (JAN), which conducts fine-grained feature alignment at both semantic-level and feature-level. Specifically, JAN minimizes a distribution distance between originally and newly collected traces in the feature space for feature-level alignment, and utilizes two task-specific classifiers to detect unaligned traces and force these traces mapped within decision boundaries for semantic-level alignment. Extensive experiments on public datasets show that JAN outperforms the state-of-the-art few-shot WF methods, especially in the difficult 1-shot tasks. |
doi_str_mv | 10.1093/comjnl/bxae009 |
format | Article |
fullrecord | <record><control><sourceid>crossref</sourceid><recordid>TN_cdi_crossref_primary_10_1093_comjnl_bxae009</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>10_1093_comjnl_bxae009</sourcerecordid><originalsourceid>FETCH-LOGICAL-c124t-eb29dbf34e2c6d73ff3069e2a832266d7c722bcda3c9be716b695270712581a3</originalsourceid><addsrcrecordid>eNotkE9LAzEUxIMouFavnvcLbPvysk2a41JcrRQ9WPC4JNm3ddv9I0mg-u1daU8zDMww_Bh75DDnoMXCjf1h6Bb2xxCAvmIJzyVkCFJdswSAQ5ZLhFt2F8IBABC0TNj6dWyHmBZdux96mtwbxdPojyEtR5-WdMo-vsaYfpINbaS0bIc9-W8_dSaXFjEad7xnN43pAj1cdMZ25dNu_ZJt358362KbOY55zMiirm0jckInayWaRoDUhGYlEOWUOIVoXW2E05YUl1bqJSpQHJcrbsSMzc-zzo8heGqq6Udv_G_FofonUJ0JVBcC4g9zSVGV</addsrcrecordid><sourcetype>Aggregation Database</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype></control><display><type>article</type><title>Joint Alignment Networks For Few-Shot Website Fingerprinting Attack</title><source>Oxford University Press Journals All Titles (1996-Current)</source><creator>Zhou, Qiang ; Wang, Liangmin ; Zhu, Huijuan ; Lu, Tong ; Song, Heping</creator><creatorcontrib>Zhou, Qiang ; Wang, Liangmin ; Zhu, Huijuan ; Lu, Tong ; Song, Heping</creatorcontrib><description>Website fingerprinting (WF) attacks based on deep neural networks pose a significant threat to the privacy of anonymous network users. However, training a deep WF model requires many labeled traces, which can be labor-intensive and time-consuming, and models trained on the originally collected traces cannot be directly used for the classification of newly collected traces due to the concept drift caused by the time gap in the data collection. Few-shot WF attacks are proposed for using the originally and few-shot newly collected labeled traces to facilitate anonymous trace classification. However, existing few-shot WF attacks ignore the fine-grained feature alignment to eliminate the concept drift in the model training, which fails to fully use the knowledge of labeled traces. We propose a novel few-shot WF attack called Joint Alignment Networks (JAN), which conducts fine-grained feature alignment at both semantic-level and feature-level. Specifically, JAN minimizes a distribution distance between originally and newly collected traces in the feature space for feature-level alignment, and utilizes two task-specific classifiers to detect unaligned traces and force these traces mapped within decision boundaries for semantic-level alignment. Extensive experiments on public datasets show that JAN outperforms the state-of-the-art few-shot WF methods, especially in the difficult 1-shot tasks.</description><identifier>ISSN: 0010-4620</identifier><identifier>EISSN: 1460-2067</identifier><identifier>DOI: 10.1093/comjnl/bxae009</identifier><language>eng</language><ispartof>Computer journal, 2024-06, Vol.67 (6), p.2331-2345</ispartof><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed><cites>FETCH-LOGICAL-c124t-eb29dbf34e2c6d73ff3069e2a832266d7c722bcda3c9be716b695270712581a3</cites></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>314,780,784,27924,27925</link.rule.ids></links><search><creatorcontrib>Zhou, Qiang</creatorcontrib><creatorcontrib>Wang, Liangmin</creatorcontrib><creatorcontrib>Zhu, Huijuan</creatorcontrib><creatorcontrib>Lu, Tong</creatorcontrib><creatorcontrib>Song, Heping</creatorcontrib><title>Joint Alignment Networks For Few-Shot Website Fingerprinting Attack</title><title>Computer journal</title><description>Website fingerprinting (WF) attacks based on deep neural networks pose a significant threat to the privacy of anonymous network users. However, training a deep WF model requires many labeled traces, which can be labor-intensive and time-consuming, and models trained on the originally collected traces cannot be directly used for the classification of newly collected traces due to the concept drift caused by the time gap in the data collection. Few-shot WF attacks are proposed for using the originally and few-shot newly collected labeled traces to facilitate anonymous trace classification. However, existing few-shot WF attacks ignore the fine-grained feature alignment to eliminate the concept drift in the model training, which fails to fully use the knowledge of labeled traces. We propose a novel few-shot WF attack called Joint Alignment Networks (JAN), which conducts fine-grained feature alignment at both semantic-level and feature-level. Specifically, JAN minimizes a distribution distance between originally and newly collected traces in the feature space for feature-level alignment, and utilizes two task-specific classifiers to detect unaligned traces and force these traces mapped within decision boundaries for semantic-level alignment. Extensive experiments on public datasets show that JAN outperforms the state-of-the-art few-shot WF methods, especially in the difficult 1-shot tasks.</description><issn>0010-4620</issn><issn>1460-2067</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2024</creationdate><recordtype>article</recordtype><recordid>eNotkE9LAzEUxIMouFavnvcLbPvysk2a41JcrRQ9WPC4JNm3ddv9I0mg-u1daU8zDMww_Bh75DDnoMXCjf1h6Bb2xxCAvmIJzyVkCFJdswSAQ5ZLhFt2F8IBABC0TNj6dWyHmBZdux96mtwbxdPojyEtR5-WdMo-vsaYfpINbaS0bIc9-W8_dSaXFjEad7xnN43pAj1cdMZ25dNu_ZJt358362KbOY55zMiirm0jckInayWaRoDUhGYlEOWUOIVoXW2E05YUl1bqJSpQHJcrbsSMzc-zzo8heGqq6Udv_G_FofonUJ0JVBcC4g9zSVGV</recordid><startdate>20240624</startdate><enddate>20240624</enddate><creator>Zhou, Qiang</creator><creator>Wang, Liangmin</creator><creator>Zhu, Huijuan</creator><creator>Lu, Tong</creator><creator>Song, Heping</creator><scope>AAYXX</scope><scope>CITATION</scope></search><sort><creationdate>20240624</creationdate><title>Joint Alignment Networks For Few-Shot Website Fingerprinting Attack</title><author>Zhou, Qiang ; Wang, Liangmin ; Zhu, Huijuan ; Lu, Tong ; Song, Heping</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-c124t-eb29dbf34e2c6d73ff3069e2a832266d7c722bcda3c9be716b695270712581a3</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2024</creationdate><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>Zhou, Qiang</creatorcontrib><creatorcontrib>Wang, Liangmin</creatorcontrib><creatorcontrib>Zhu, Huijuan</creatorcontrib><creatorcontrib>Lu, Tong</creatorcontrib><creatorcontrib>Song, Heping</creatorcontrib><collection>CrossRef</collection><jtitle>Computer journal</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Zhou, Qiang</au><au>Wang, Liangmin</au><au>Zhu, Huijuan</au><au>Lu, Tong</au><au>Song, Heping</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>Joint Alignment Networks For Few-Shot Website Fingerprinting Attack</atitle><jtitle>Computer journal</jtitle><date>2024-06-24</date><risdate>2024</risdate><volume>67</volume><issue>6</issue><spage>2331</spage><epage>2345</epage><pages>2331-2345</pages><issn>0010-4620</issn><eissn>1460-2067</eissn><abstract>Website fingerprinting (WF) attacks based on deep neural networks pose a significant threat to the privacy of anonymous network users. However, training a deep WF model requires many labeled traces, which can be labor-intensive and time-consuming, and models trained on the originally collected traces cannot be directly used for the classification of newly collected traces due to the concept drift caused by the time gap in the data collection. Few-shot WF attacks are proposed for using the originally and few-shot newly collected labeled traces to facilitate anonymous trace classification. However, existing few-shot WF attacks ignore the fine-grained feature alignment to eliminate the concept drift in the model training, which fails to fully use the knowledge of labeled traces. We propose a novel few-shot WF attack called Joint Alignment Networks (JAN), which conducts fine-grained feature alignment at both semantic-level and feature-level. Specifically, JAN minimizes a distribution distance between originally and newly collected traces in the feature space for feature-level alignment, and utilizes two task-specific classifiers to detect unaligned traces and force these traces mapped within decision boundaries for semantic-level alignment. Extensive experiments on public datasets show that JAN outperforms the state-of-the-art few-shot WF methods, especially in the difficult 1-shot tasks.</abstract><doi>10.1093/comjnl/bxae009</doi><tpages>15</tpages></addata></record> |
fulltext | fulltext |
identifier | ISSN: 0010-4620 |
ispartof | Computer journal, 2024-06, Vol.67 (6), p.2331-2345 |
issn | 0010-4620 1460-2067 |
language | eng |
recordid | cdi_crossref_primary_10_1093_comjnl_bxae009 |
source | Oxford University Press Journals All Titles (1996-Current) |
title | Joint Alignment Networks For Few-Shot Website Fingerprinting Attack |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-07T11%3A14%3A28IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-crossref&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=Joint%20Alignment%20Networks%20For%20Few-Shot%20Website%20Fingerprinting%20Attack&rft.jtitle=Computer%20journal&rft.au=Zhou,%20Qiang&rft.date=2024-06-24&rft.volume=67&rft.issue=6&rft.spage=2331&rft.epage=2345&rft.pages=2331-2345&rft.issn=0010-4620&rft.eissn=1460-2067&rft_id=info:doi/10.1093/comjnl/bxae009&rft_dat=%3Ccrossref%3E10_1093_comjnl_bxae009%3C/crossref%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true |