As an effective anti-censorship mechanism, network covert channels can provide data privacy protection and ensure communication security. However, the covertness of existing network covert channels primarily depends on the secrecy of their covert algorithms. With the increasing depth of research in this field, the difficulty of breaking such algorithms has gradually decreased. Once the algorithm is exposed, the network covert channel can be easily detected by adversaries. To address this issue, this paper proposes a covert carrier filtering strategy based on the hash. In this strategy, a key-dependent filtering rule is introduced during the construction of the network covert channel, enabling the communicating parties to randomly and dynamically filter a sparse subset from the carrier set as the covert carrier set. This strategy not only enhances the randomness of carrier selection but also tightly couples the covertness of the network covert channel with the security of the key. We employ machine learning-based traffic analysis methods to experimentally validate the strategy in two types of network covert channels: network storage and timing covert channels. The experimental results demonstrate that the proposed strategy significantly improves the detection resistance of network covert channels. When the filter key size exceeds six bits, the impact on the detection effect of the classifier becomes quite significant. Furthermore, the processing delay for a single packet is less than 8 $μs$, indicating the feasibility of deploying the proposed strategy in high-speed network environments.


翻译:作为一种有效的反 censorship 机制,网络隐蔽信道能够提供数据隐私保护并确保通信安全。然而,现有网络隐蔽信道的隐蔽性主要依赖于其隐蔽算法的保密性。随着该领域研究的深入,此类算法被攻破的难度逐渐降低。一旦算法泄露,网络隐蔽信道极易被对手检测。针对此问题,本文提出一种基于散列的隐写载体过滤策略。该策略在网络隐蔽信道构建过程中引入密钥相关的过滤规则,使通信双方能够从载体集中随机、动态地筛选出稀疏子集作为隐写载体集。该策略不仅增强了载体选择的随机性,还将网络隐蔽信道的隐蔽性与密钥的安全性紧密耦合。我们采用基于机器学习的流量分析方法,在两种网络隐蔽信道——网络存储与时延隐蔽信道——中对该策略进行实验验证。实验结果表明,所提策略显著提升了网络隐蔽信道的抗检测能力。当过滤密钥长度超过六位时,对分类器检测效果的影响已相当显著。此外,单个数据包的处理延迟小于 8 $μs$,证实了该策略在高速网络环境中部署的可行性。

0
下载
关闭预览

相关内容

《通过网络隐蔽渠道开发物联网》74页论文
专知会员服务
31+阅读 · 2023年10月28日
《图像数据隐藏技术综述》
专知会员服务
43+阅读 · 2023年3月26日
《综述:基于博弈论和机器学习的防御性欺骗方法》
专知会员服务
51+阅读 · 2022年10月2日
【专题】美国隐私立法进展的总体分析
蚂蚁金服评论
11+阅读 · 2019年4月25日
区块链隐私保护研究综述——祝烈煌详解
计算机研究与发展
23+阅读 · 2018年11月28日
网络表示学习介绍
人工智能前沿讲习班
18+阅读 · 2018年11月26日
NetworkMiner - 网络取证分析工具
黑白之道
16+阅读 · 2018年6月29日
如何访问"暗网"(慎入)
黑白之道
145+阅读 · 2018年6月14日
综述——隐私保护集合交集计算技术研究
计算机研究与发展
22+阅读 · 2017年10月24日
国家自然科学基金
2+阅读 · 2017年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
19+阅读 · 2015年12月31日
国家自然科学基金
20+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
Arxiv
0+阅读 · 5月6日
VIP会员
最新内容
驱动军事决策变革的顶尖人工智能指挥系统
专知会员服务
7+阅读 · 8月11日
非对称防御中的自组织临界性:俄乌战争
专知会员服务
10+阅读 · 8月10日
《战争中的大语言模型监管》
专知会员服务
13+阅读 · 8月10日
《边缘计算关键技术分析及美军作战实践应用》
边缘计算的军事应用
专知会员服务
12+阅读 · 8月9日
一种考虑资源机动性的武器目标分配混合算法
专知会员服务
13+阅读 · 8月8日
相关资讯
【专题】美国隐私立法进展的总体分析
蚂蚁金服评论
11+阅读 · 2019年4月25日
区块链隐私保护研究综述——祝烈煌详解
计算机研究与发展
23+阅读 · 2018年11月28日
网络表示学习介绍
人工智能前沿讲习班
18+阅读 · 2018年11月26日
NetworkMiner - 网络取证分析工具
黑白之道
16+阅读 · 2018年6月29日
如何访问"暗网"(慎入)
黑白之道
145+阅读 · 2018年6月14日
综述——隐私保护集合交集计算技术研究
计算机研究与发展
22+阅读 · 2017年10月24日
相关基金
国家自然科学基金
2+阅读 · 2017年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
19+阅读 · 2015年12月31日
国家自然科学基金
20+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
Top
微信扫码咨询专知VIP会员