FINDING · EVALUATION

A KL-divergence classifier trained to distinguish CovertCast streams from real YouTube streams achieved only 33–45% true positive rate on packet-size distributions and 36–41% on inter-packet timing distributions — below random guessing — while maintaining 86–98% true negative rates. Overall classifier accuracy was approximately 65–68%, driven entirely by the high true negative rate rather than genuine detection capability.

From 2016-mcpherson-covertcastCovertCast: Using Live Streaming to Evade Internet Censorship · §7.5, Table 1 · 2016 · Privacy Enhancing Technologies

Implications

Tags

censors
generic
techniques
traffic-shapeml-classifier
defenses
tunneling

Extracted by claude-sonnet-4-6 — review before relying.