四川大学学报(自然科学版)2026,Vol.63Issue(3):509-523,15.DOI:10.19907/j.0490-6756.250171
暗网加密流量分类与溯源技术研究综述
A review of Darknet encrypted traffic classification and correlation research
摘要
Abstract
Anonymous network communication protocols have emerged as key technologies for protecting the anonymity of communication entities and data privacy.With the evolution of protocol architectures and the iterative upgrades of hidden service technologies,the Darknet ecosystem based on anonymous communica-tion has transformed into a platform for cybercrime.Among these,the Onion Routing protocol(Tor proto-col)has become the mainstream Darknet communication architecture due to its complex anonymity protection mechanisms.Within the Darknet,various criminal activities such as illegal transactions,data theft,and the sale of contraband primarily occur on hidden service websites and applications.From the perspective of cyber-security governance,identifying Darknet service traffic and tracing network entities holds significant theoreti-cal value and practical urgency.This paper systematically reviews research progress in the field of Darknet en-crypted traffic identification and tracing,focusing on three key dimensions:encrypted traffic feature recogni-tion,service application classification models,and encrypted traffic correlation analysis techniques.Through comparative analysis of the detection accuracy and applicability of different technical approaches,it reveals the existing technical bottlenecks in ciphertext parsing,behavioral pattern extraction,and deep correlation in-ference.关键词
暗网/加密流量识别/加密流量溯源/网络空间治理Key words
Darknet/encrypted traffic identification/encrypted traffic tracing/cyberspace governance分类
信息技术与安全科学引用本文复制引用
李雨芙,宫良一,王跃达,袁亚丽..暗网加密流量分类与溯源技术研究综述[J].四川大学学报(自然科学版),2026,63(3):509-523,15.基金项目
国家重点研发计划青年科学家项目(2023YFB3106700) (2023YFB3106700)
国家自然科学基金面上项目(62272440) (62272440)