FINDING · DEFENSE

Migrating the client IP address every 25–100 packets reduces state-of-the-art website fingerprinting attack accuracy to below 10% in the closed-world setting, outperforming advanced dedicated defenses such as HyWF multipathing. The mechanism works because most fingerprinting classifiers rely on as many packets per flow as possible, and flow splitting degrades feature quality.

From 2020-govil-mimiqMIMIQ: Masking IPs with Migration in QUIC · §5 · 2020 · Free and Open Communications on the Internet

Implications

Tags

censors
generic
techniques
website-fingerprintml-classifier
defenses
randomization

Extracted by claude-sonnet-4-6 — review before relying.