首页> 外文会议>International conference on ICT systems security and privacy protection >Actively Probing Routes for Tor AS-Level Adversaries with RIPE Atlas
【24h】

Actively Probing Routes for Tor AS-Level Adversaries with RIPE Atlas

机译:积极探测成熟地图集的托盘级侵犯途径

获取原文
获取外文期刊封面目录资料

摘要

Tor provides anonymity to millions of users around the globe, which has made it a valuable target for malicious actors. As a low-latency anonymity system, it is vulnerable to traffic correlation attacks from strong passive adversaries, such as large autonomous systems. Estimations of the risk posed by such attackers as well as the evaluation of defense strategies are mostly based on simulations and data retrieved from BGP updates. However, this might only provide an incomplete view of the network and thereby influence the results of such analyses. It has already been acknowledged in previous studies that direct path measurements, e.g. with traceroute, could provide valuable information. But in the past, such measurements were thought to be impossible, because they require the placement of measurement nodes in the same ASes as the respective Tor network nodes. With the rise of new technologies and methodologies, this assumption needs to be re-evaluated. In this paper we present a novel methodology to utilize the RIPE Atlas framework, a network of more than 10,000 probes worldwide, to actively perform traceroute commands from and to Tor guard and exit relays to clients and destinations. Based on multiple global scans our results validate previous results and show the large influence on Tor posed by a limited set of ASes. These are in a strong position to carry out effective correlation attacks on Tor traffic. With this work, we provide an additional source of information that can be used together with BGP route information to increase the accuracy of future models and simulations of Tor and ultimately improve anonymity on the Internet.
机译:Tor为全球数百万用户提供了匿名的,这使其成为恶意演员的宝贵目标。作为一个低延迟匿名系统,它很容易受到来自强被无源对手的流量相关攻击,例如大型自治系统。这些攻击者提出的风险的估计以及辩护策略的评估主要是基于从BGP更新中检索的模拟和数据。然而,这可能只提供网络的不完整视图,从而影响这种分析的结果。它已经在前面的研究中得到了直接的路径测量,例如之前的研究。使用Traceroute,可以提供有价值的信息。但是,在过去,认为这种测量是不可能的,因为它们要求将测量节点的放置在与相应的TOR网络节点相同的状态中。随着新技术和方法的兴起,需要重新评估这种假设。在本文中,我们提出了一种新的方法来利用成熟的地图集框架,全世界超过10,000个探针的网络,积极地执行来自客户端和地区的Traceroute命令并退出到客户端和目的地。基于多个全球扫描,我们的结果验证了以前的结果,并对一组有限的原样提出了对Tor的大量影响。这些处于强大的位置,以对Tor交通进行有效的相关性攻击。通过这项工作,我们提供了一个可以与BGP路由信息一起使用的额外信息来源,以提高TOR的未来模型和模拟的准确性,并最终改善互联网上的匿名。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号