Skip to content
Conference

Security and Forensic Analysis of Dark Web Exploration via the Tor Network

Aug 2026 · 2026 6th International Conference on Emerging Smart Technologies and Applications (eSmarTA) · pp. 1-7 · 0 citations · 16 references

Abstract

The paper discuss about the utility of anonymity provided by Tor network and evaluate its security and forensic limitations. Whonix was used to create a controlled experimental environment to simulate the use of the dark web anonymously. The study combines network traffic analysis, browser fingerprinting, open-source intelligence (OSINT) and metadata forensics in order to evaluate possible anonymity leaks. The results indicate that, although Tor is an effective mechanism to hide user identity at the network-level, there are still considerable vulnerabilities on the application and behavioral levels. The browsing fingerprinting, metadata leakage and operational security (OPSEC) failures can be the causes of user deanonymization. The practice of real-life scenarios and trial and error reveals that anonymity is not merely dependent on the Tor infrastructure but also appropriate user practices. The paper ends up concluding that, to attain a strong anonymity, a layered security strategy that uses technical tools and trained user practices is needed. The paper represents a practical and experimental analysis of Tor anonymity that entailed a mixture of both network and behavioral and forensic analysis.

View source

Similar papers

Open access Sep 2026

A Loopix-Based Anonymous Network with Selective Anonymity Removal and AI-Driven Adaptability for Configurable Networks

Anonymity networks are crucial for safeguarding user privacy, but they constantly struggle to strike a balance between security, performance, and anonymity because enhancing one of these factors frequently has an impact on the others. To maintain important anonymity properties, such as sender and recipient anonymity, c...

Ahmad Binaie, Mahdi Azizi · 0 citations
Preprint Sep 2026

Understanding the Privacy-Preserving Potential of HTTP/2 Against Webpage Fingerprinting

Website fingerprinting (WF) attacks can infer which webpage a user visits from encrypted HTTPS traffic alone, compromising privacy even without decryption. WF defenses commonly shape traffic through noise, padding, delays, or flow splitting, yet they are most often studied from the perspective of encapsulating protocol...

Bogdan Cebere, Prateek Kumar, Sylvain Chatel et al. · 0 citations
Conference Aug 2026

Security and Privacy Challenges in Web 3.0: A Survey of Threats, Authentication Mechanisms, and Open Problems

Web 3.0 is a paradigm shift in the design of the Internet, from centralized platform custodians to decentralized blockchain-based infrastructures and user empowered data models. This results in a new and dynamic threat landscape including social engineering, smart-contract exploitation, cryptojacking, identity abuse an...

Adarsh S. V. Nair, R. Achary · 0 citations
Preprint Sep 2026

Beyond the Trust Boundary: A Critical Reassessment of the FIDO2 Threat Model

FIDO2/WebAuthn has been widely deployed as a phishing-resistant authentication scheme. Because FIDO2 relies on public-key cryptography and hardware-backed authenticators, its security is often assumed to be guaranteed by design, provided that the cryptographic implementation is correct. In this work, we critically reas...

Aditya Mitra, Kolluru Sai Abhiram, S. C. Sethuraman et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.