FINDING · DETECTION

A plug-and-play Boundary Preserving Aggregation Module (overlapping window partitioning with joint packet- and burst-level features, W=20ms, stride=10ms) consistently improves existing WF baselines without architectural modification: applied to DF, AUC rises from 0.780 to 0.901 and P@5 from 0.315 to 0.545; applied to ARES'25, P@5 rises from 0.869 to 0.900 in the open-world 5-tab setting. The module's consistent gains across all three tested baselines confirm that fixed non-overlapping window segmentation is a structural vulnerability in prior WF pipelines.

From 2026-yuan-demux-boundary-aware-multi-scaleDEMUX: Boundary-Aware Multi-Scale Traffic Demixing for Multi-Tab Website Fingerprinting · §V-G, Figure 5 · 2026 · arXiv preprint

Implications

Tags

censors
generic
techniques
website-fingerprintml-classifiertraffic-shape
defenses
tor

Extracted by claude-sonnet-4-6 — review before relying.