steganography “hiding in plain sight” gary alan davis, d.sc. department of computer &...

14
Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Upload: austin-morrison

Post on 29-Dec-2015

220 views

Category:

Documents


1 download

TRANSCRIPT

Page 1: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Steganography

“Hiding in Plain Sight”

Gary Alan Davis, D.Sc.Department of Computer & Information Systems

Page 2: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Steganography – what is it?

• Covered Writing (Berinato, 2003)

– from Greek “steganos” & “graphie”

• Earliest example (May, 1997)

– Greece, 500 B.C.– Message tattooed on shaved head of slave– Message sent when hair grew back

• Goal: Hide the fact that message even exists (Glass, 2002)

Page 3: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Steganography in Technology

• Hiding messages within legitimate files– Picture (.bmp, .jpeg, .gif)– Audio (.wav, .mp3)– Video (.mpeg, .avi)

• Messages could be . . . (Fisher, 2004)

– Trademark/copyright information– Communication to others– Malicious code

Page 4: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Good Steganography

• Watermarks– Identify copyrighted material– Deter unlicensed use– Deter piracy

• Digital Watermarks (Glass, 2002)

– Robust Watermarks – use blocked if mark is detected– Fragile Watermarks – use blocked if mark is corrupted

Page 5: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Bad Steganography

• Malicious code (Fisher, 2004)

– Viruses– Spyware

• Terrorist Communications (Kolata, 2001)

– “Dead Drop” (e.g., eBay)– No direct communication– Difficult to detect hidden messages in files

Page 6: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Steganography Demo

Steganography 1.7.115 day free trial

$24.95 to purchaseSecureKit, Inc. (www.securekit.com)

Page 7: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems
Page 8: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems
Page 9: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems
Page 10: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

84

Page 11: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems
Page 12: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

84

Page 13: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

84

Page 14: Steganography “Hiding in Plain Sight” Gary Alan Davis, D.Sc. Department of Computer & Information Systems

Thank you!

Any Questions?

[email protected]