跳到主要导航 跳到搜索 跳到主要内容

Him of Many Faces: Characterizing Billion-scale Adversarial and Benign Browser Fingerprints on Commercial Websites

  • Johns Hopkins University
  • Inc.

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Browser fingerprints, while traditionally being used for web tracking, have recently been adopted more and more often for defense or detection of various attacks targeting real-world websites. Faced with these situations, adversaries also upgrade their weapons to generate their own fingerprints—defined as adversarial fingerprints—to bypass existing defense or detection. Naturally, such adversarial fingerprints are different from benign ones from user browsers because they are generated intentionally for defense bypass. However, no prior works have studied such differences in the wild by comparing adversarial with benign fingerprints let alone how adversarial fingerprints are generated. In this paper, we present the first billion-scale measurement study of browser fingerprints collected from 14 major commercial websites (all ranked among Alexa/Tranco top 10,000). We further classify these fingerprints into either adversarial or benign using a learning-based, feedback-driven fraud and bot detection system from F5, Inc., and then study their differences. Our results draw three major observations: (i) adversarial fingerprints are significantly different from benign ones in many metrics, e.g., entropy, unique rate, and evolution speed, (ii) adversaries are adopting various tools and strategies to generate adversarial fingerprints, and (iii) adversarial fingerprints vary across different attack types, e.g., from content scraping to fraud transactions.

源语言英语
主期刊名30th Annual Network and Distributed System Security Symposium, NDSS 2023
出版商The Internet Society
ISBN(电子版)1891562835, 9781891562839
DOI
出版状态已出版 - 2023
已对外发布
活动30th Annual Network and Distributed System Security Symposium, NDSS 2023 - San Diego, 美国
期限: 27 2月 20233 3月 2023

出版系列

姓名30th Annual Network and Distributed System Security Symposium, NDSS 2023

会议

会议30th Annual Network and Distributed System Security Symposium, NDSS 2023
国家/地区美国
San Diego
时期27/02/233/03/23

指纹

探究 'Him of Many Faces: Characterizing Billion-scale Adversarial and Benign Browser Fingerprints on Commercial Websites' 的科研主题。它们共同构成独一无二的指纹。

引用此