Gotta give this thought a great big ditto. I've believed for a long time now that the real reason the fedz have tried to scare the public from using heavy crypto is for precisely this reason...a lot can be determined merely by the presence and form of crypto used. I am in fact starting to wonder if whether (in certain contexts) merely knowing that something is encrypted (and how) is just about as good as de-encrypting it.

As for the "how", one wonders some form of "fake-stego" can't be incorporated somehow into non-stego programs, such as zip/compression utilities, file-sharing and so on.

-TD






From: Thomas Shaddack <[EMAIL PROTECTED]>
To: Tim May <[EMAIL PROTECTED]>
CC: <[EMAIL PROTECTED]>
Subject: Re: S-Tools Stego makes an appearance in "Law and Order-SVU"
Date: Sun, 30 Mar 2003 08:22:24 +0200 (CEST)

> Mentions of anonymous remailers are now almost commonplace. Looks like
> stego is catching up.
>
> Implications for attempted bans on these tools, or "enhanced
> sentencing," are left to your imagination.

Steganalysis is going to be a big thing.

Possible countermeasure is embedding a steganographed message (can be a
random file with statistical characteristics equal to an encrypted file)
into as many images as possible. The adversary will still be able to
detect the data in the file, but the number of files with "real" messages
in them could be just a fraction of the total amount.

A Microsoft(R) Worm(R) could be unleashed that would steganographically
embed random files into all JPEG files found on the victim machines, for
"diluting" the stego files in a worldwide scale; possessing/transmitting
such image wouldn't then be automatically a reaspon for suspicion. Another
approach, less effective but also less dramatic and more difficult to do
in large scale, is to put such module into some popular graphics-editing
software.

Opinions, comments, peer review?


_________________________________________________________________
MSN 8 helps eliminate e-mail viruses. Get 2 months FREE*. http://join.msn.com/?page=features/virus




Reply via email to