Home >> Computers >> Security >> Products and Tools >> Cryptography >> Steganography




Steganography is a art & science of writing hidden messages withwithin such how else that there are no 1 apart from either the arranged recipient knows of the being of the message; this is in direct contrast to cryptography, where a being of a message itself is does'nt cloaked, however the meaning is obscured. "Steganography" occurs as Greek word & means covered or even hidden writing. Its origins may be traced back to 440 BC. Herodotus mentions two examples of Steganography in The Histories of Herodotus[http://www.cl.cam.ac.uk/~fapp2/publications/ieee99-infohiding.pdf]. Demeratus sent the warning astir the forthcoming attacks to Xerxes by writing it around the wooden panel & covering it in wax. the 2nd lessin is Histaeus world health organization shaved a head of his virtually all sure slave & tattooed a message on his head. Fallowing his hair got grown a message was hidden. a purpose was to instigate a uprising against the Persians. Late, Johannes Trithemius's book Steganographia is a treatise in cryptography & neglect cloaked as a book in black magic.

Typically the steganographic message might come out to exist as something else: the picture, an article, the searching listing, or even another "cover" message. Recent trends include steganographic disregard within of the shipping layer such an MP3 file or the protocol like UDP.

Steganographic messages come typically number 1 encrypted by some traditional means, so the covertext is modified somehow to contaaround a encrypted message, resultant in stegotext. E.g., a letter size, spacing, typeface, or more characteristics of a covertext may be manipulated to carry a hidden message; merely a recipient (world health organization must understand a system utilized) potty recoup the message so decrypt it. Francis Bacon is known to have suggested such the system to hide messages.

An example from modern practice
A larger a handle message is (within information content terms — total of bits) relative to a hidden message, the more leisurely these are to hide the latter. For this cause, digital pictures (which contain large numbers of information) come utilized to hide messages on the Internet and on more communication media. These are non clear how else usually this is actually done. E.g.: the Two dozen bit bitmap will have 8 bits representing both of the troika colour values (red, green, & blue) at every pixel. Whenever you assume just the blue there is Two8 different values of blue. The difference between say 11111111 & 11111110 in the value for blue intensity is in all probability to exist as undetectable per person eye. So, a least significant bit can be used (just about undetectably) for something else differently colour tools. In case i hump sustaining a green & a red also you might develop a single letter of ASCII text for every triad pixels.

Declared somewhat further formally, a objective for making steganographic encryption hard to detect is to assure that a changes to a host (a original signal) due to a injection of a payload (the signal to covertly embed) come visually (& ideally, statistically) negligible; that is to say, the changes come undistinguishable from either the noise floor of the host.

(From either an information theoretical point of view, this means that a channel must have supplementary capacity than the 'skin-deep' signal requires, i.e., there exists redundancy. For the digital image, this can be noise from the imaging element; for digital audio, it may be noise from either recording techniques or even amplification equipment. Any technique sustaining an analog (signal) amplification stage will likewise introduce and so-supposed thermal or "1/f" noise, which can be exploited as a noise handle. Additionally, lossy compression schemes (such as JPEG) always introduce a few error into a decompressed information; these are imaginable to exploit this for steganographic have too.)

Steganography may be utilized for digital watermarking, where the message (existence only an identifier) is hidden inside an image then that its source may be tracked or even verified.

Steganographic techniques
Steganography has been widely utilized within historical days, especially prior to cryptographical systems were developed. Examples of historical usage include: Hidden messages within wax tablets: in ancient Greece, people wrote messages on the wood, so covered it by having wax so that it looked such as an ordinary, unused, tablet. Hidden messages in courier's system: likewise around ancient Greece. Herodotus tells the story of the message tattooed on the slave's shaved head, covered by hair regrowth, and involved by reshaving. the message, in case a story is admittedly, carried a warning to Greece all about Persian invasion plans. Hidden messages inside paper written in secret inks under more messages or even on the blank area of other messages. In the period of & when World War II, espionage agents used microdots to send information back & forth. Since the dots were often pleasantly microscopic -- a size of a period produced by a typewriter (perhaps inside a font by having Tenner or Dozen characters by a inch) or even smaller -- the stegotext was whatever the dot was hidden inside. Whenever the letter or even an location, it was a select few alphabetic characters. In case under a postage stamp, it was the presence of the stamp. Other obscurely, when you took World War II, a Japanese spy in New York City, Velvalee Dickinson, sent information to accommodation addresses in neutral South America. She was the dealer around dolls, and her letters discussed how else numbers of of this or even that doll to ship. A stegotext in that out break was a doll orders; a 'plaintext' existence concealed was itself the codetext giving information just about ship movements, etc. Her example became somewhat celebrated & she became called a Doll Woman. A one-time pad is a theoretically unbreakable cipher that produces ciphertexts indistinguishable from either either random texts: lone victims world health organization keep close at hand a personal key might distinguish these ciphertexts from any more perfectly random texts. So, any perfectly random information may be utilized as the covertext for a theoretically unbreakable ignore.

Occasionally further recent ignore techniques: Chaffing and winnowing Invisible ink Null ciphers Out of sight messages within tampered feasible files, exploiting redundancy in the i386 instruction placed [http://crazyboy.com/hydan/].

Additional terminology
Generally, nomenclature correspondent to (& uniform using) sir thomas more conventional radio & communications technology is utilized; notwithstanding, the brief description of a bit of terms which indicate higher within package specifically, & come easy confused, is appropriate. Which are actually virtually all relevant to digital steganographic systems.

A payload is the information these are suitable to transportation (&, so, to hide). A host is a signal, stream, or even information file into which the payload is hidden; direct contrast "channel" (usually utilized to refer to the nature and severity of input, like "a JPEG image"). A sequent signal, stream, or even information file which has a payload encoded into these are for instance known as a pack. A percentage of bytes, samples, or even more signal elements which are then modified to encode a payload is known as a encryption density & is generally expressed as a swimming-point total between 0 & One.

Around the placed of files, victims files considered probably to contain the payload come known as suspects. Whenever a suspect was identified across the bit of nature and severity of technical indicator analysis, it can be known as a candidate.

Rumored usage in terrorism

A hearsay just about terrorists applying neglect began number one in the day-after-day newspaper USA Today on February 5th 2001. A articles come however available on the net, & were highborn "Terrorist instructions hidden online", & a equivalent day, "Terror groups hide behind Web encryption". Inside July of the equivalent month, the information browsed possibly supplementary exact: "Militants wire Web with links to jihad". The citation: "Lately, al-Qaeda operatives have been sending hundreds of encrypted messages that have been hidden in files on digital photographs on the auction site eBay.com". These rumour were cited several days - forgoing ever showing any actual proof - by more media worldwide, especially fallowing a terrorist attack of 9/11.

A America In todays world articles were written by seasoned foreign correspondent Jack Kelley, who withwithin 2004 was fired in the heavy scandal, because it appeared that he fabricated much of stories & invented sources that didn't survive.

Within October 2001, the New York Times published an article claiming that al-Qaeda had used steganographic techniques to encode messages into images, then transported these via electronic mail & even via USENET to prepare & execute a September 11, 2001 Terrorist Attack. Despite existence dismissed by security experts, a story has been widely repeated & resurfaces oft. It was noted that the story apparently originated using a handout from either "iomart" [http://www.iomart.com], the trafficker of steganalysis software. There are no corroborating grounds to believe has been by any more source.

Moreover, the captured al-Qaeda expert instruction manual makes there is no mention of this method of disregard. A chapter in communications in a al-Qaeda manual acknowledges the technical indicator superiority of U.s. mi, & usually advocates great-technology forms of covert communication. A chapter in "codes and ciphers" web pages considerable emphasis in utilizing invisible inks in traditional paper letters, plus elementary ciphers like simple substitution with nulls; computerized image neglect is non mentioned.

Nonetheless public efforts were mounted to detect a presence of steganographic tools inside images in the internet (especially in eBay, which had been mentioned in the Just released York Days article). Up to now these scans use at times examined hundreds to thousands of images while forgoing detecting any steganographic content (view "Detecting Steganographic Content on the Internet" under external links), differently trial images utilized to line 1 text a body, & instructional images in internet site just about secret writing.

Efficacious detection of steganographically encoded materials around communications intercepts between suspected terrorists is so highly significant, however super complicated, when i may look at beneath.

Countermeasures

A detection of steganographically encoded packages is known as steganalysis. A simplest method to detect limited files, all the same, is to compare the babies to the originals. To detect references existence affected through a graphics in the places, for instance, an analyst may maintain known-fresh copies one materials & compare the babies against the todays contents of the site. A differences (assuming a host is a equivalent) may compose the payload.

Generally, utilizing an extremely high compression rate makes secret writing hard, but not impossible; when compression errors provide a good place to hide information, high compression reduces a total of information available to hide a payload within, raising a encryption density & facilitating more leisurely detection (in the extreme instance, possibly by casual observation).

Antiy Labs
Info Stego software is used for embedding files within other files and encrypting them with a 128 bit secure algorithm.

Concealogram
Steganographic tool for encrypting data in images. Product information, profiles of directors and contact details.

OutGuess
Freeware steganographic tools for hiding and detecting hidden data in PNM and JPEG image formats.

Reasonably Adequate Privacy
Steganography technique which uses the tendency of dried vegetable juices to become colored when heated as its base technology.

Stealth Encryption
Stealth Encryption software hides files in images. Encrypt email attachments or sensitive data. Protect digital art. Enter the contest. Free reader and images.

Xidie
Offers multiple file steganography and encryption and secure file deletion. Product technical details and ordering information.

Analyzing Steganogaphy Software
Review of 12 steganography products, both freeware and commercial. Covers strength and detectability of algorithms used.

Hermetic Stego
Supports hiding data files in one or more BMP image files. Usage instructions, pricing and downloadable evaluation copy. [Windows]

Securityfocus
Article covering what Steganography is, its applications, tools available and possible approachs to detecting where it is being used.

Steganography and Digital Watermarking
Collection of papers on data hiding and digital watermarking, including countermeasures.






© 2005 GeneralAnswers.org