Robust and Reliable Early-Stage Website Fingerprinting Attacks via Spatial-Temporal Distribution Analysis
Xinhao Deng, Qi Li, Ke Xu
Abstract
Website Fingerprinting (WF) attacks identify the websites visited by users by performing traffic analysis, compromising user privacy. Particularly, DL-based WF attacks demonstrate impressive attack performance. However, the effectiveness of DL-based WF attacks relies on the collected complete and pure traffic during the page loading, which impacts the practicality of these attacks. The WF performance is rather low under dynamic network conditions and various WF defenses, particularly when the analyzed traffic is only a small part of the complete traffic. In this paper, we propose Holmes, a robust and reliable early-stage WF attack. Holmes utilizes temporal and spatial distribution analysis of website traffic to effectively identify websites in the early stages of page loading. Specifically, Holmes develops adaptive data augmentation based on the temporal distribution of website traffic and utilizes a supervised contrastive learning method to extract the correlations between the early-stage traffic and the pre-collected complete traffic. Holmes accurately identifies traffic in the early stages of page loading by computing the correlation of the traffic with the spatial distribution information, which ensures robust and reliable detection according to early-stage traffic. We extensively evaluate Holmes using six datasets. Compared to nine existing DL-based WF attacks, Holmes improves the F1-score of identifying early-stage traffic by an average of 169.18%. Furthermore, we replay the traffic of visiting real-world dark web websites. Holmes successfully identifies dark web websites when the ratio of page loading on average is only 21.71%, with an average precision improvement of 169.36% over the existing WF attacks. CCS Concepts • Networks → Network privacy and anonymity.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext fdc26d97-62af-4315-bf8a-f0d8b016d73dCited by top-tier papers10
- Detecting Tunneled Flooding Traffic via Deep Semantic Analysis of Packet Length PatternsChuanpu Fu, Qi Li, Meng Shen, Ke XuCCS 2024 · 13 citations
- Towards Fine-Grained Webpage Fingerprinting at ScaleXiyuan Zhao, Xinhao Deng, Qi Li, Yunpeng Liu et al.CCS 2024 · 11 citations
- CELLSHIFT: RTT-Aware Trace Transduction for Real-World Website FingerprintingRob JansenNDSS 2026 · 5 citations
- STAR: Semantic-Traffic Alignment and Retrieval for Zero-Shot HTTPS Website FingerprintingYifei Cheng, Yujia Zhu, Baiyang Li, Xinhao Deng et al.INFOCOM 2026 · 4 citations
- IntraGuard: Committee-Side Defenses Against Review Outsourcing to Commercial ChatbotsOubo Ma, Ruixiao Lin, Jiahao Chen, Yuan Su et al.CCS 2026 · 2 citations
Builds on20
- Supervised Contrastive LearningPrannay Khosla, Piotr Teterwak, Chen Wang, Aaron Sarna et al.NeurIPS 2020 · 7,049 citations
- Deep Fingerprinting: Undermining Website Fingerprinting Defenses with Deep LearningPayap Sirinam, Mohsen Imani, Marc Juarez, Matthew WrightCCS 2018 · 632 citations
- Website Fingerprinting at Internet ScaleAndriy Panchenko, Fabian Lanze, Jan Pennekamp, Thomas Engel et al.NDSS 2016 · 625 citations
- Automated Website Fingerprinting through Deep LearningVera Rimmer, Davy Preuveneers, Marc Juarez, Tom van Goethem et al.NDSS 2018 · 399 citations
- Triplet Fingerprinting: More Practical and Portable Website Fingerprinting with N-shot LearningPayap Sirinam, Nate Mathews, Mohammad Saidur Rahman, Matthew WrightCCS 2019 · 268 citations
Related papers
- Contrastive Fingerprinting: A Novel Website Fingerprinting Attack over Few-shot TracesYi Xie, Jiahao Feng, Wenju Huang, Yixi Zhang et al.WWW 2024 · 18 citations
- HOLMES & WATSON: A Robust and Lightweight HTTPS Website Fingerprinting through HTTP Version ParallelismYifei Cheng, Yujia Zhu, Baiyang Li, Peishuai Sun et al.WWW 2025 · 4 citations
- Subverting Website Fingerprinting Defenses with Robust Traffic RepresentationMeng Shen, Kexin Ji, Zhenbo Gao, Qi Li et al.USENIX Security 2023
- HiFi-WF: Toward Realistic Website Fingerprinting with Multi-tab and Subpage RecognitionSongyang Wu, Chuan Ma, Ming Ding, Long Yuan et al.WWW 2026
- Robust LLM-Based Website Fingerprinting under Dynamic Real-World ConditionsXiyuan Zhao, Xinhao Deng, Tianyu Cui, Yixiang Zhang et al.WWW 2026
