{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,7]],"date-time":"2026-07-07T15:24:20Z","timestamp":1783437860196,"version":"3.54.6"},"publisher-location":"Cham","reference-count":37,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319085050","type":"print"},{"value":"9783319085067","type":"electronic"}],"license":[{"start":{"date-parts":[[2014,1,1]],"date-time":"2014-01-01T00:00:00Z","timestamp":1388534400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014]]},"DOI":"10.1007\/978-3-319-08506-7_16","type":"book-chapter","created":{"date-parts":[[2014,6,19]],"date-time":"2014-06-19T21:39:22Z","timestamp":1403213962000},"page":"304-331","source":"Crossref","is-referenced-by-count":48,"title":["Spoiled Onions: Exposing Malicious Tor Exit Relays"],"prefix":"10.1007","author":[{"given":"Philipp","family":"Winter","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Richard","family":"K\u00f6wer","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Martin","family":"Mulazzani","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Markus","family":"Huber","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Sebastian","family":"Schrittwieser","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Stefan","family":"Lindskog","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Edgar","family":"Weippl","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"16_CR1","unstructured":"Alexa: The top 500 sites on the web (2013), \n                  \n                    http:\/\/www.alexa.com\/topsites"},{"key":"16_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"207","DOI":"10.1007\/11745853_14","volume-title":"Public Key Cryptography - PKC 2006","author":"D.J. Bernstein","year":"2006","unstructured":"Bernstein, D.J.: Curve25519: New Diffie-Hellman speed records. In: Yung, M., Dodis, Y., Kiayias, A., Malkin, T. (eds.) PKC 2006. LNCS, vol.\u00a03958, pp. 207\u2013228. Springer, Heidelberg (2006), \n                  \n                    http:\/\/cr.yp.to\/ecdh\/curve25519-20060209.pdf"},{"key":"16_CR3","unstructured":"Le Blond, S., et al.: One Bad Apple Spoils the Bunch: Exploiting P2P Applications to Trace and Profile Tor Users. In: LEET. USENIX (2011), \n                  \n                    https:\/\/www.usenix.org\/legacy\/events\/leet11\/tech\/full_papers\/LeBlond.pdf"},{"key":"16_CR4","unstructured":"Le Blond, S., et al.: Spying the World from Your Laptop: Identifying and Profiling Content Providers and Big Downloaders in BitTorrent. In: LEET. USENIX (2010), \n                  \n                    https:\/\/www.usenix.org\/legacy\/event\/leet10\/tech\/full_papers\/LeBlond.pdf"},{"key":"16_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"222","DOI":"10.1007\/978-3-642-23644-0_12","volume-title":"Recent Advances in Intrusion Detection","author":"S. Chakravarty","year":"2011","unstructured":"Chakravarty, S., Portokalidis, G., Polychronakis, M., Keromytis, A.D.: Detecting Traffic Snooping in Tor Using Decoys. In: Sommer, R., Balzarotti, D., Maier, G. (eds.) RAID 2011. LNCS, vol.\u00a06961, pp. 222\u2013241. Springer, Heidelberg (2011), \n                  \n                    http:\/\/www.cs.columbia.edu\/~mikepo\/papers\/tordecoys.raid11.pdf"},{"key":"16_CR6","unstructured":"Crossbear, \n                  \n                    http:\/\/www.crossbear.org"},{"key":"16_CR7","unstructured":"Dingledine, R.: Re: Holy shit I caught 1 (2006), \n                  \n                    http:\/\/archives.seul.org\/or\/talk\/Aug-2006\/msg00262.html"},{"key":"16_CR8","unstructured":"Dingledine, R., Mathewson, N.: Anonymity Loves Company: Usability and the Network Effect. In: WEIS (2006), \n                  \n                    http:\/\/freehaven.net\/doc\/wupss04\/usability.pdf"},{"key":"16_CR9","unstructured":"Dingledine, R., Mathewson, N.: Tor Protocol Specification, \n                  \n                    https:\/\/gitweb.torproject.org\/torspec.git?a=blob_plain;hb=HEAD;f=torspec.txt"},{"key":"16_CR10","doi-asserted-by":"crossref","unstructured":"Dingledine, R., Mathewson, N., Syverson, P.: Tor: The Second-Generation Onion Router. In: USENIX Security. USENIX (2004), \n                  \n                    http:\/\/static.usenix.org\/event\/sec04\/tech\/full_papers\/dingledine\/dingledine.pdf","DOI":"10.21236\/ADA465464"},{"key":"16_CR11","unstructured":"Electronic Frontier Foundation. HTTPS Everywhere (2013), \n                  \n                    https:\/\/www.eff.org\/https-everywhere"},{"key":"16_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"316","DOI":"10.1007\/11957454_18","volume-title":"Privacy Enhancing Technologies","author":"I. Goldberg","year":"2006","unstructured":"Goldberg, I.: On the Security of the Tor Authentication Protocol. In: Danezis, G., Golle, P. (eds.) PET 2006. LNCS, vol.\u00a04258, pp. 316\u2013331. Springer, Heidelberg (2006), \n                  \n                    http:\/\/freehaven.net\/anonbib\/cache\/tap:pet2006.pdf"},{"key":"16_CR13","unstructured":"Haim, D.: SocksiPy - A Python SOCKS client module (2006), \n                  \n                    http:\/\/socksipy.sourceforge.net"},{"key":"16_CR14","unstructured":"Hodges, J., Jackson, C., Barth, A.: HTTP Strict Transport Security, HSTS (2012), \n                  \n                    https:\/\/tools.ietf.org\/html\/rfc6797"},{"key":"16_CR15","unstructured":"Hodges, J., Jackson, C., Barth, A.: RFC 6797: HTTP Strict Transport Security, HSTS (2012), \n                  \n                    https:\/\/tools.ietf.org\/html\/rfc6797"},{"key":"16_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"245","DOI":"10.1007\/978-3-642-13241-4_22","volume-title":"Communications and Multimedia Security","author":"M. Huber","year":"2010","unstructured":"Huber, M., Mulazzani, M., Weippl, E.: Tor HTTP Usage and Information Leakage. In: De Decker, B., Schaum\u00fcller-Bichl, I. (eds.) CMS 2010. LNCS, vol.\u00a06109, pp. 245\u2013255. Springer, Heidelberg (2010), \n                  \n                    http:\/\/freehaven.net\/anonbib\/cache\/huber2010tor.pdf"},{"key":"16_CR17","unstructured":"InformAction. NoScript (2013), \n                  \n                    http:\/\/noscript.net"},{"key":"16_CR18","unstructured":"Known Bad Relays, \n                  \n                    https:\/\/trac.torproject.org\/projects\/tor\/wiki\/doc\/badRelays"},{"key":"16_CR19","unstructured":"Thoughtcrime Labs. Convergence (2011), \n                  \n                    http:\/\/convergence.io"},{"key":"16_CR20","unstructured":"Langley, A.: Public key pinning (2011), \n                  \n                    https:\/\/www.imperialviolet.org\/2011\/05\/04\/pinning.html"},{"key":"16_CR21","unstructured":"Lowe, G., Winters, P., Marcus, M.L.: The Great DNS Wall of China. Tech. rep. New York University (2007), \n                  \n                    http:\/\/cs.nyu.edu\/~pcw216\/work\/nds\/final.pdf"},{"key":"16_CR22","unstructured":"Marlinspike, M.: sslstrip, \n                  \n                    http:\/\/www.thoughtcrime.org\/software\/sslstrip\/"},{"key":"16_CR23","unstructured":"Marlinspike, M.: tortunnel, \n                  \n                    http:\/\/www.thoughtcrime.org\/software\/tortunnel\/"},{"key":"16_CR24","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/978-3-540-70630-4_5","volume-title":"Privacy Enhancing Technologies","author":"D. McCoy","year":"2008","unstructured":"McCoy, D., Bauer, K., Grunwald, D., Kohno, T., Sicker, D.C.: Shining Light in Dark Places: Understanding the Tor Network. In: Borisov, N., Goldberg, I. (eds.) PETS 2008. LNCS, vol.\u00a05134, pp. 63\u201376. Springer, Heidelberg (2008), \n                  \n                    http:\/\/homes.cs.washington.edu\/~yoshi\/papers\/Tor\/PETS2008_37.pdf"},{"key":"16_CR25","unstructured":"Paul, R.: Security expert used Tor to collect government e-mail passwords (2007), \n                  \n                    http:\/\/arstechnica.com\/security\/2007\/09\/security-expert-used-tor-to-collect-government-e-mail-passwords\/"},{"key":"16_CR26","unstructured":"Perry, M., Clark, E., Murdoch, S.: The Design and Implementation of the Tor Browser [DRAFT] (2013), \n                  \n                    https:\/\/www.torproject.org\/projects\/torbrowser\/design\/"},{"key":"16_CR27","unstructured":"SkullSecurity. Passwords (2011), \n                  \n                    https:\/\/wiki.skullsecurity.org\/Passwords"},{"key":"16_CR28","unstructured":"SoftCom, Inc. Email Hosting Services, \n                  \n                    http:\/\/mail2web.com"},{"key":"16_CR29","unstructured":"The Tor Project. ExoneraTor, \n                  \n                    https:\/\/exonerator.torproject.org"},{"key":"16_CR30","unstructured":"The Tor Project. Relays with Exit, Fast, Guard, Stable, and HSDir flags, \n                  \n                    https:\/\/metrics.torproject.org\/network.html#relayflags"},{"key":"16_CR31","unstructured":"The Tor Project. Snakes on a Tor, \n                  \n                    https:\/\/gitweb.torproject.org\/torflow.git\/tree\/HEAD:\/NetworkScanners\/ExitAuthority"},{"key":"16_CR32","unstructured":"The Tor Project. Stem Docs, \n                  \n                    https:\/\/stem.torproject.org"},{"key":"16_CR33","unstructured":"The Tor Project. TC: A Tor control protocol (Version 1), \n                  \n                    https:\/\/gitweb.torproject.org\/torspec.git\/blob\/HEAD:\/control-spec.txt"},{"key":"16_CR34","unstructured":"TOR exit-node doing MITM attacks, \n                  \n                    http:\/\/www.teamfurry.com\/wordpress\/2007\/11\/20\/tor-exit-node-doing-mitmattacks"},{"key":"16_CR35","unstructured":"Torscanner, \n                  \n                    https:\/\/code.google.com\/p\/torscanner\/"},{"key":"16_CR36","unstructured":"Torsocks: use socks-friendly applications with Tor, \n                  \n                    https:\/\/code.google.com\/p\/torsocks\/"},{"key":"16_CR37","unstructured":"Wendlandt, D., Andersen, D.G., Perrig, A.: Perspectives: Improving SSH-style Host Authentication with Multi-Path Probing. In: ATC. USENIX (2008), \n                  \n                    http:\/\/perspectivessecurity.files.wordpress.com\/2011\/07\/perspectives_usenix08.pdf"}],"container-title":["Lecture Notes in Computer Science","Privacy Enhancing Technologies"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-08506-7_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,27]],"date-time":"2019-05-27T00:14:56Z","timestamp":1558916096000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-08506-7_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014]]},"ISBN":["9783319085050","9783319085067"],"references-count":37,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-08506-7_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2014]]}}}