Proceedings of the 16th International Conference on Availability, Reliability and Security 2021
DOI: 10.1145/3465481.3465764
|View full text |Cite
|
Sign up to set email alerts
|

How Private is Android’s Private DNS Setting? Identifying Apps by Encrypted DNS Traffic

Abstract: DNS over TLS (DoT) and DNS over HTTPS (DoH) promise to improve privacy and security of DNS by encrypting DNS messages, especially when messages are padded to a uniform size. Firstly, to demonstrate the limitations of recommended padding approaches, we present Segram, a novel app fingerprinting attack that allows adversaries to infer which mobile apps are executed on a device. Secondly, we record traffic traces of 118 Android apps using 10 differnet DoT/DoH resolvers to study the effectiveness of Segram under d… Show more

Help me understand this report
View preprint versions

Search citation statements

Order By: Relevance

Paper Sections

Select...
4

Citation Types

0
5
0

Year Published

2022
2022
2024
2024

Publication Types

Select...
4
2

Relationship

0
6

Authors

Journals

citations
Cited by 6 publications
(5 citation statements)
references
References 25 publications
0
5
0
Order By: Relevance
“…Apart from website fingerprinting, Segram, as presented in [85], is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic. Apart from website fingerprinting, Segram [85] is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic.…”
Section: Profiling User Activity By Analyzing Encrypted Dns Trafficmentioning
confidence: 99%
See 4 more Smart Citations
“…Apart from website fingerprinting, Segram, as presented in [85], is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic. Apart from website fingerprinting, Segram [85] is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic.…”
Section: Profiling User Activity By Analyzing Encrypted Dns Trafficmentioning
confidence: 99%
“…Apart from website fingerprinting, Segram, as presented in [85], is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic. Apart from website fingerprinting, Segram [85] is able to identify Android applications for smartphones and IoT devices used by clients through the analysis of their DoT or DoH traffic. The authors used the n-grams of DNS sequences (message sizes and interarrival time) as primary features of their classification model, which outperforms their counterparts [103] employing other features such as n-grams of TLS record sizes and burst lengths.…”
Section: Profiling User Activity By Analyzing Encrypted Dns Trafficmentioning
confidence: 99%
See 3 more Smart Citations