Research Article

Few-Shot Website Fingerprinting Attack with Data Augmentation

Table 4

Results of open-world WF attack on (target classes) +  (nontarget classes). Pre : precision and Rec : recall. We reported two settings: one is tuned for best precision (top), and one for recall (bottom).

MethodTuned for precision
5-shot10-shot15-shot20-shot
PreRecPreRecPreRecPreRec

ResNet-34 [18]32.54.742.16.650.421.861.339.6
Var-CNN [16]39.72.758.89.274.235.878.054.4
ResNet-34 + HDA72.70.88.743.892.655.1
Var-CNN + HDA6.991.247.291.464.366.6

Tuned for recall

ResNet-34 [18]1225.619.237.830.254.534.968.6
Var-CNN [16]13.927.126.752.837.473.942.282.6
ResNet-34 + HDA21.137.436.268.945.789.247.291.4
Var-CNN + HDA28.046.949.349.1