论文标题

缩放击键:利用视频呼叫进行击键推理攻击

Zoom on the Keystrokes: Exploiting Video Calls for Keystroke Inference Attacks

论文作者

Sabra, Mohd, Maiti, Anindya, Jadliwala, Murtuza

论文摘要

由于最近的世界活动,视频呼叫已成为个人和专业远程交流的新规范。但是,如果视频通话的参与者不小心,他/她可以在电话中向其他人透露自己的私人信息。在本文中,我们设计和评估了一个攻击框架,以从呼叫的视频流中推断出一种类型的私人信息 - 键盘,即在呼叫过程中键入的文本。我们使用不同的实验设置和参数(包括不同的网络摄像头,视频分辨率,键盘,服装和背景)评估了基于视频的击键推理框架。我们相对较高的击键推理精度在常见和现实的设置下,强调了对这种攻击的意识和对策的需求。因此,我们还建议和评估有效的缓解技术,这些缓解技术可以在视频呼叫期间输入时自动保护。

Due to recent world events, video calls have become the new norm for both personal and professional remote communication. However, if a participant in a video call is not careful, he/she can reveal his/her private information to others in the call. In this paper, we design and evaluate an attack framework to infer one type of such private information from the video stream of a call -- keystrokes, i.e., text typed during the call. We evaluate our video-based keystroke inference framework using different experimental settings and parameters, including different webcams, video resolutions, keyboards, clothing, and backgrounds. Our relatively high keystroke inference accuracies under commonly occurring and realistic settings highlight the need for awareness and countermeasures against such attacks. Consequently, we also propose and evaluate effective mitigation techniques that can automatically protect users when they type during a video call.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源