{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T05:08:19Z","timestamp":1750136899839,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":36,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642236433"},{"type":"electronic","value":"9783642236440"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-23644-0_12","type":"book-chapter","created":{"date-parts":[[2012,2,11]],"date-time":"2012-02-11T05:06:20Z","timestamp":1328936780000},"page":"222-241","source":"Crossref","is-referenced-by-count":20,"title":["Detecting Traffic Snooping in Tor Using Decoys"],"prefix":"10.1007","author":[{"given":"Sambuddho","family":"Chakravarty","sequence":"first","affiliation":[]},{"given":"Georgios","family":"Portokalidis","sequence":"additional","affiliation":[]},{"given":"Michalis","family":"Polychronakis","sequence":"additional","affiliation":[]},{"given":"Angelos D.","family":"Keromytis","sequence":"additional","affiliation":[]}],"member":"297","reference":[{"key":"12_CR1","unstructured":"Anonymizer, Inc., http:\/\/www.anonymizer.com\/"},{"key":"12_CR2","unstructured":"Anonymouse, http:\/\/anonymouse.org\/"},{"key":"12_CR3","unstructured":"Inside Net Neutrality: Is your ISP filtering content?, http:\/\/www.macworld.com\/article\/132075\/2008\/02\/netneutrality1.html"},{"key":"12_CR4","unstructured":"Rogue Nodes Turn Tor Anonymizer Into Eavesdropper\u2019s Paradise, http:\/\/www.wired.com\/politics\/security\/news\/2007\/09\/embassy_hacks"},{"key":"12_CR5","unstructured":"Tor Metrics Portal, http:\/\/metrics.torproject.org\/"},{"key":"12_CR6","unstructured":"Tor Path Specification, https:\/\/gitweb.torproject.org\/torspec.git?a=blob_plain;hb=HEAD;f=path-spec.txt"},{"key":"12_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"141","DOI":"10.1007\/978-3-540-40956-4_10","volume-title":"Privacy Enhancing Technologies","author":"K. Bennett","year":"2003","unstructured":"Bennett, K., Grothoff, C.: GAP - practical anonymous networking. In: Dingledine, R. (ed.) PET 2003. LNCS, vol.\u00a02760, pp. 141\u2013160. Springer, Heidelberg (2003)"},{"key":"12_CR8","doi-asserted-by":"crossref","unstructured":"Bowen, B.M., Hershkop, S., Keromytis, A.D., Stolfo, S.J.: Baiting Inside Attackers Using Decoy Documents. In: Proceedings of the 5th International ICST Conference on Security and Privacy in Communication Networks (SecureComm), pp. 51\u201370 (September 2009)","DOI":"10.21236\/ADA500672"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Bowen, B.M., Kemerlis, V.P., Prabhu, P., Keromytis, A.D., Stolfo, S.J.: Automating the injection of believable decoys to detect snooping. In: Proceedings of the Third ACM Conference on Wireless Network Security (WiSec), pp. 81\u201386 (2010)","DOI":"10.1145\/1741866.1741880"},{"key":"12_CR10","doi-asserted-by":"publisher","first-page":"22","DOI":"10.1109\/MSP.2009.109","volume":"7","author":"B.M. Bowen","year":"2009","unstructured":"Bowen, B.M., Salem, M.B., Hershkop, S., Keromytis, A.D., Stolfo, S.J.: Designing host and network sensors to mitigate the insider threat. IEEE Security and Privacy\u00a07, 22\u201329 (2009)","journal-title":"IEEE Security and Privacy"},{"issue":"2","key":"12_CR11","doi-asserted-by":"publisher","first-page":"84","DOI":"10.1145\/358549.358563","volume":"24","author":"D.L. Chaum","year":"1981","unstructured":"Chaum, D.L.: Untraceable Electronic Mail, Return Addresses, and Digital Pseudonyms. Communications of the ACM\u00a024(2), 84\u201390 (1981)","journal-title":"Communications of the ACM"},{"key":"12_CR12","unstructured":"Danezis, G., Dingledine, R., Mathewson, N.: Mixminion: A Type III Anonymous Remailer, http:\/\/mixminion.net\/"},{"key":"12_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"54","DOI":"10.1007\/3-540-36467-6_5","volume-title":"Privacy Enhancing Technologies","author":"C. D\u00edaz","year":"2003","unstructured":"D\u00edaz, C., Seys, S., Claessens, J., Preneel, B.: Towards measuring anonymity. In: Dingledine, R., Syverson, P.F. (eds.) PET 2002. LNCS, vol.\u00a02482, pp. 54\u201368. Springer, Heidelberg (2003), http:\/\/portal.acm.org\/citation.cfm?id=1765299.1765304"},{"key":"12_CR14","unstructured":"Dingledine, R., Mathewson, N., Syverson, P.: Onion Routing, http:\/\/www.onion-router.net\/"},{"key":"12_CR15","doi-asserted-by":"crossref","unstructured":"Dingledine, R., Mathewson, N., Syverson, P.: Tor: The Second-Generation Onion Router. In: Proceedings of the 13th USENIX Security Symposium), pp. 303\u2013319 (August 2004)","DOI":"10.21236\/ADA465464"},{"key":"12_CR16","unstructured":"Firesheep, http:\/\/codebutler.com\/firesheep"},{"key":"12_CR17","unstructured":"The Honeynet Project, http:\/\/www.honeynet.org\/"},{"key":"12_CR18","doi-asserted-by":"crossref","unstructured":"Isdal, T., Piatek, M., Krishnamurthy, A., Anderson, T.: Privacy-preserving P2P data sharing with oneswarm. In: Proceedings of the Conference on Applications, Technologies, Architectures, and Protocols for Computer Communications (SIGCOMM), pp. 111\u2013122 (2010)","DOI":"10.1145\/1851275.1851198"},{"key":"12_CR19","unstructured":"JAP, http:\/\/anon.inf.tu-dresden.de\/"},{"key":"12_CR20","unstructured":"McCanne, S., Leres, C., Jacobson, V.: Tcpdump and Libpcap, http:\/\/www.tcpdump.org\/"},{"key":"12_CR21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/978-3-540-70630-4_5","volume-title":"Privacy Enhancing Technologies","author":"D. Mccoy","year":"2008","unstructured":"Mccoy, D., Bauer, K., Grunwald, D., Kohno, T., Sicker, D.: Shining light in dark places: Understanding the tor network. In: Borisov, N., Goldberg, I. (eds.) PETS 2008. LNCS, vol.\u00a05134, pp. 63\u201376. Springer, Heidelberg (2008)"},{"key":"12_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"245","DOI":"10.1007\/978-3-642-13241-4_22","volume-title":"Communications and Multimedia Security","author":"M. Mulazzani","year":"2010","unstructured":"Mulazzani, M., Huber, M., Weippl, E.R.: Tor HTTP usage and information leakage. In: De Decker, B., Schaum\u00fcller-Bichl, I. (eds.) CMS 2010. LNCS, vol.\u00a06109, pp. 245\u2013255. Springer, Heidelberg (2010)"},{"key":"12_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"200","DOI":"10.1007\/978-3-642-14215-4_12","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"N. Nikiforakis","year":"2010","unstructured":"Nikiforakis, N., Younan, Y., Joosen, W.: Hproxy: client-side detection of ssl stripping attacks. In: Kreibich, C., Jahnke, M. (eds.) DIMVA 2010. LNCS, vol.\u00a06201, pp. 200\u2013218. Springer, Heidelberg (2010)"},{"key":"12_CR24","doi-asserted-by":"crossref","unstructured":"\u00d8verlier, L., Syverson, P.: Locating hidden servers. In: Proceedings of the IEEE Symposium on Security and Privacy (2006)","DOI":"10.1109\/SP.2006.24"},{"key":"12_CR25","unstructured":"Provos, N.: A virtual honeypot framework. In: Proceedings of the 13th USENIX Security Symposium, pp. 1\u201314 (August 2004)"},{"key":"12_CR26","doi-asserted-by":"publisher","first-page":"66","DOI":"10.1145\/290163.290168","volume":"1","author":"M.K. Reiter","year":"1998","unstructured":"Reiter, M.K., Rubin, A.D.: Crowds: anonymity for web transactions. ACM Trans. Inf. Syst. Secur.\u00a01, 66\u201392 (1998)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"key":"12_CR27","doi-asserted-by":"crossref","unstructured":"Sidiroglou, S., Stavrou, A., Keromytis, A.: Mediated overlay services (MOSES): Network security as a composable service. In: 2007 IEEE, Sarnoff Symposium, (April 30 - May 2) pp. 1\u20137 (2007)","DOI":"10.1109\/SARNOF.2007.4567338"},{"key":"12_CR28","unstructured":"Song, D.: dsniff, http:\/\/www.monkey.org\/~dugsong\/dsniff\/"},{"key":"12_CR29","unstructured":"Spitzner, L.: Honeytokens: The Other Honeypot, http:\/\/www.symantec.com\/connect\/articles\/honeytokens-other-honeypot"},{"key":"12_CR30","unstructured":"Spitzner, L.: Honeypots: Catching the insider threat. In: Proceedings of the 19th Annual Computer Security Applications Conference, ACSAC (2003)"},{"issue":"5","key":"12_CR31","doi-asserted-by":"publisher","first-page":"484","DOI":"10.1145\/42411.42412","volume":"31","author":"C. Stoll","year":"1988","unstructured":"Stoll, C.: Stalking the wily hacker. Communications of the ACM\u00a031(5), 484\u2013497 (1988)","journal-title":"Communications of the ACM"},{"key":"12_CR32","unstructured":"Stoll, C.: The cuckoo\u2019s egg: tracking a spy through the maze of computer espionage. Doubleday, New York, NY, USA (1989)"},{"key":"12_CR33","unstructured":"Team Furry: TOR exit-node doing MITM attacks, http:\/\/www.teamfurry.com\/wordpress\/2007\/11\/20\/tor-exit-node-doing-mitm-attacks\/"},{"key":"12_CR34","unstructured":"Weaver, N., Sommer, R., Paxson, V.: Detecting forged tcp reset packets. In: Proceedings of the 16th Network and Distributed System Security Symposium, NDSS (2009)"},{"key":"12_CR35","unstructured":"Wright, M.K., Adler, M., Levine, B.N., Shields, C.: An analysis of the degradation of anonymous protocols. In: Proceedings of the Network and Distributed Security Symposium, NDSS (2002)"},{"key":"12_CR36","doi-asserted-by":"crossref","unstructured":"Yuill, J., Zappe, M., Denning, D., Feer, F.: Honeyfiles: Deceptive Files for Intrusion Detection. In: Proceedings of the 2nd IEEE Workshop on Information Assurance (WIA), pp. 116\u2013122 (2004)","DOI":"10.1109\/IAW.2004.1437806"}],"container-title":["Lecture Notes in Computer Science","Recent Advances in Intrusion Detection"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-23644-0_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,20]],"date-time":"2025-03-20T13:24:00Z","timestamp":1742477040000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-23644-0_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642236433","9783642236440"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-23644-0_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2011]]}}}