Raising the Bar: Improved Fingerprinting Attacks and Defenses for Video Streaming Traffic

Authors: David Hasselquist (Linköping University & Sectra Communications, Sweden), Ethan Witwer (Linköping University, Sweden), August Carlson (Linköping University, Sweden), Niklas Johansson (Linköping University & Sectra Communications, Sweden), Niklas Carlsson (Linköping University, Sweden)

Volume: 2024
Issue: 4
Pages: 167–184
DOI: https://doi.org/10.56553/popets-2024-0112

Artifact: Available

Download PDF

Abstract: Despite the clear dominance of video streaming traffic on the Internet and the significant ramifications of disclosure of which videos users are streaming, video fingerprinting has received relatively little attention compared to other traffic analysis domains. Existing attacks are tailored to undefended traffic and mostly rely on a few manually crafted features. Meanwhile, potential defenses are ad hoc, often impractical, and typically only mentioned briefly. Drawing from progress made on website fingerprinting, we aim to improve current standards for attacks and defenses for video streaming traffic while highlighting a critical and underexplored issue on today's Internet. We show that directional and timing-based attacks that leverage CNNs are competitive with state-of-the-art video fingerprinting attacks, in many cases with far less training data. We also provide the first extensive study of potential defenses, which considers performance against attacks, overheads, and user QoE; and we present a novel defense design that boasts both broader applicability and greater efficacy than existing proposals.

Keywords: Video fingerprinting, Traffic analysis, Defenses, Attacks

Copyright in PoPETs articles are held by their authors. This article is published under a Creative Commons Attribution 4.0 license.