{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2019:XKXQVFNAMQQOLCJEL4KD27PQ6H","short_pith_number":"pith:XKXQVFNA","schema_version":"1.0","canonical_sha256":"baaf0a95a06420e589245f143d7df0f1df008579d852ff0c1104fce64350e2fd","source":{"kind":"arxiv","id":"1907.01317","version":1},"attestation_state":"computed","paper":{"title":"Padding Ain't Enough: Assessing the Privacy Guarantees of Encrypted DNS","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Christian Rossow, Jonas Bushart","submitted_at":"2019-07-02T12:20:26Z","abstract_excerpt":"DNS over TLS (DoT) and DNS over HTTPS (DoH) encrypt DNS to guard user privacy by hiding DNS resolutions from passive adversaries. Yet, past attacks have shown that encrypted DNS is still sensitive to traffic analysis. As a consequence, RFC 8467 proposes to pad messages prior to encryption, which heavily reduces the characteristics of encrypted traffic. In this paper, we show that padding alone is insufficient to counter DNS traffic analysis. We propose a novel traffic analysis method that combines size and timing information to infer the websites a user visits purely based on encrypted and pad"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"1907.01317","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-07-02T12:20:26Z","cross_cats_sorted":[],"title_canon_sha256":"f22af119217f0aed7c86d8b37e40de00d0135183b3484f6ea6b51b14da84496d","abstract_canon_sha256":"5968a43fbaf536a28909c2f1acd265749d9e7513a05f55cacaee4f481c19113e"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:41:40.684075Z","signature_b64":"RwpMrLU5omw4YXHtSf0bYFTqCgM9emSx3d9qdhkI0f33yKfCJ6LDUwlR9DmrYqUaKtkFx63NKimV4LbThy/oBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"baaf0a95a06420e589245f143d7df0f1df008579d852ff0c1104fce64350e2fd","last_reissued_at":"2026-05-17T23:41:40.683576Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:41:40.683576Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Padding Ain't Enough: Assessing the Privacy Guarantees of Encrypted DNS","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Christian Rossow, Jonas Bushart","submitted_at":"2019-07-02T12:20:26Z","abstract_excerpt":"DNS over TLS (DoT) and DNS over HTTPS (DoH) encrypt DNS to guard user privacy by hiding DNS resolutions from passive adversaries. Yet, past attacks have shown that encrypted DNS is still sensitive to traffic analysis. As a consequence, RFC 8467 proposes to pad messages prior to encryption, which heavily reduces the characteristics of encrypted traffic. In this paper, we show that padding alone is insufficient to counter DNS traffic analysis. We propose a novel traffic analysis method that combines size and timing information to infer the websites a user visits purely based on encrypted and pad"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1907.01317","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"1907.01317","created_at":"2026-05-17T23:41:40.683652+00:00"},{"alias_kind":"arxiv_version","alias_value":"1907.01317v1","created_at":"2026-05-17T23:41:40.683652+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1907.01317","created_at":"2026-05-17T23:41:40.683652+00:00"},{"alias_kind":"pith_short_12","alias_value":"XKXQVFNAMQQO","created_at":"2026-05-18T12:33:33.725879+00:00"},{"alias_kind":"pith_short_16","alias_value":"XKXQVFNAMQQOLCJE","created_at":"2026-05-18T12:33:33.725879+00:00"},{"alias_kind":"pith_short_8","alias_value":"XKXQVFNA","created_at":"2026-05-18T12:33:33.725879+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H","json":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H.json","graph_json":"https://pith.science/api/pith-number/XKXQVFNAMQQOLCJEL4KD27PQ6H/graph.json","events_json":"https://pith.science/api/pith-number/XKXQVFNAMQQOLCJEL4KD27PQ6H/events.json","paper":"https://pith.science/paper/XKXQVFNA"},"agent_actions":{"view_html":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H","download_json":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H.json","view_paper":"https://pith.science/paper/XKXQVFNA","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=1907.01317&json=true","fetch_graph":"https://pith.science/api/pith-number/XKXQVFNAMQQOLCJEL4KD27PQ6H/graph.json","fetch_events":"https://pith.science/api/pith-number/XKXQVFNAMQQOLCJEL4KD27PQ6H/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H/action/timestamp_anchor","attest_storage":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H/action/storage_attestation","attest_author":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H/action/author_attestation","sign_citation":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H/action/citation_signature","submit_replication":"https://pith.science/pith/XKXQVFNAMQQOLCJEL4KD27PQ6H/action/replication_record"}},"created_at":"2026-05-17T23:41:40.683652+00:00","updated_at":"2026-05-17T23:41:40.683652+00:00"}