skip to main content
10.1145/3488658.3493782acmconferencesArticle/Chapter ViewAbstractPublication PagesconextConference Proceedingsconference-collections
short-paper

An analysis of privacy leakage in DoQ traffic

Published:07 December 2021Publication History

ABSTRACT

Increased demand for DNS privacy has driven the creation of several encrypted DNS protocols, such as DNS over HTTPS (DoH), DNS over TLS (DoT), and DNS over QUIC (DoQ). Recently, the DoT and DoH have been deployed by some vendors like Google and Cloudflare. However, it is pointed out that DoT/DoH still have privacy leakage problems. Our goal is aiming at comparing the level of privacy leakage in encrypted DNS. This preliminary work focuses on analyzing the DoQ traffic to determine whether the adversary can infer the category of websites users visit. We find that information leakage is still possible even in the DoQ traffic. Moreover, we identify that important features are mainly related to inter-arrival times of queries, and the accuracy score slightly decreases for more categories.

References

  1. 2020. https://www.similarweb.com. (2020).Google ScholarGoogle Scholar
  2. 2021. https://github.com/AdguardTeam/dnsproxy. (2021).Google ScholarGoogle Scholar
  3. P. Hoffman and P. McManus. 2018. DNS Queries over HTTPS (DoH). In RFC 8484, RFC Editor (Ed.).Google ScholarGoogle Scholar
  4. Rebekah Houser, Zhou Li, Chase Cotton, and Haining Wang. 2019. An Investigation on Information leakage of DNS over TLS. In CoNEXT '19. Orlando, Florida, USA, 123 -- 137. Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. Z. Hu, L. Zhu, J. Heidemann, A. Mankin, D. Wessels, and P. Hoffman. 2016. Specification for DNS over Transport Layer Security (TLS). In RFC 7858, RFC Editor (Ed.).Google ScholarGoogle Scholar
  6. C. Huitema. 2021. Specification of DNS over Dedicated QUIC Connections, IETF (Ed.).Google ScholarGoogle Scholar
  7. A. Panchenko, Fabian Lanze, Jan Pennekamp, T. Engel, Andreas Zinnen, Martin Henze, and K. Wehrle. 2016. Website Fingerprinting at Internet Scale. In NDSS'16. San Diego, CA, USA.Google ScholarGoogle Scholar
  8. Sandra Siby, Marc Juarez, Claudia Diaz, Narseo Vallina-Rodriguez, and Carmela Troncoso. 2020. Encrypted DNS → Privacy? A Traffic Analysis Perspective. In NDSS'20. San Diego, CA, USA.Google ScholarGoogle ScholarCross RefCross Ref
  9. Jean-Pierre Smith, Prateek Mittal, and Adrian Perrig. 2021. Website FIngerprinting in the age of QUIC. In Proceedings on Privacy Enhancing Technologies. 48 -- 69.Google ScholarGoogle ScholarCross RefCross Ref
  10. Pengwei Zhan, Liming Wang, and Yi Tang. 2021. Website Fingerprinting on Early QUIC Traffic. ArXiv abs/2101.11871 (2021).Google ScholarGoogle Scholar

Index Terms

  1. An analysis of privacy leakage in DoQ traffic

    Recommendations

    Comments

    Login options

    Check if you have access through your login credentials or your institution to get full access on this article.

    Sign in
    • Published in

      cover image ACM Conferences
      CoNEXT-SW '21: Proceedings of the CoNEXT Student Workshop
      December 2021
      28 pages
      ISBN:9781450391337
      DOI:10.1145/3488658

      Copyright © 2021 ACM

      Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

      Publisher

      Association for Computing Machinery

      New York, NY, United States

      Publication History

      • Published: 7 December 2021

      Permissions

      Request permissions about this article.

      Request Permissions

      Check for updates

      Qualifiers

      • short-paper

    PDF Format

    View or Download as a PDF file.

    PDF

    eReader

    View online with eReader.

    eReader