SOTAVerified

Blind Adversarial Network Perturbations

2020-02-16Code Available1· sign in to hype

Milad Nasr, Alireza Bahramali, Amir Houmansadr

Code Available — Be the first to reproduce this paper.

Reproduce

Code

Abstract

Deep Neural Networks (DNNs) are commonly used for various traffic analysis problems, such as website fingerprinting and flow correlation, as they outperform traditional (e.g., statistical) techniques by large margins. However, deep neural networks are known to be vulnerable to adversarial examples: adversarial inputs to the model that get labeled incorrectly by the model due to small adversarial perturbations. In this paper, for the first time, we show that an adversary can defeat DNN-based traffic analysis techniques by applying adversarial perturbations on the patterns of live network traffic.

Reproductions