FINDING · DETECTION

Client-side padding defenses (WTF-PAD and Walkie-Talkie) do not remove active bandwidth watermarks because they operate on packet timing and burst-level structure, not on the upstream rate limit; BM-Net still achieves 99.65% binary detection F1 on a mixed dataset containing both defended and undefended traces. The upstream shaper's rate constraint causes delayed, queued, or dropped packets whose throughput envelope persists at the exit relay regardless of application-layer obfuscation.

From 2026-fan-activeflowmark-assessing-torActiveFlowMark: Assessing Tor Anonymity under Active Bandwidth Watermarking · §VI-E, §VII-A · 2026 · arXiv preprint

Implications

Tags

censors
generic
techniques
traffic-shapeflow-correlation
defenses
torrandomizationpluggable-transport

Extracted by claude-sonnet-4-6 — review before relying.