FINDING · EVALUATION

When a fingerprinting model is trained on traffic collected from one geographic vantage point and tested on traffic from a different continent, the HTTPS-only open-world FPR at 0.5 recall increased by factors ranging from 2.8x (EU-West-2) to 50.3x (Africa) relative to the same-vantage baseline — despite 60-way closed-world accuracy remaining above 0.99 across all vantage-point pairs (Table 5). For Tor traffic the effect was weaker but still reached 25.2x (Asia-Pacific Southeast-1), showing path diversity also disrupts Tor-based fingerprinting.

From 2025-walsh-improved-open-world-fingerprintingImproved Open-World Fingerprinting Increases Threat to Streaming Video Privacy but Realistic Scenarios Remain Difficult · §5.1, Table 5 · 2025 · PoPETs 2025

Implications

Tags

censors
generic
techniques
website-fingerprintml-classifiertraffic-shape
defenses
torrandomization

Extracted by claude-sonnet-4-6 — review before relying.