Data hiding techniques in Windows OS : a practical approach to investigation and defense / Nihad Admad Hassan, Rami Hijazi and Helvi Salminen, technical editor.

By: [author.]
Contributor(s): Hijazi, Rami [author.] | Salminen, Helvi [technical editor.]
Language: English Publisher: Cambridge, MA : Syngress, [2017]Copyright date: c2017Description: xv, 307 pages : illustrations ; 28 cmContent type: text Media type: unmediated Carrier type: volumeISBN: 9780128044490Subject(s): Data encryption (Computer science) | Data protection | Computer security
Contents:
1.Introduction and Historical Background -- Introduction -- Classical Cipher Types -- Substitution Cipher -- Transposition Cipher -- Other Ciphers and Codes -- Difference Between Substitution and Transposition Cipher -- Practicing Old Ciphers Using Modem Computing -- Modern Cryptography Systems -- Secret Key Cryptography -- Public Key Cryptography -- Digital Signature -- Cryptographic Hash Function -- Steganography -- What Is Steganography? -- Comparing Steganography and Cryptography -- Steganography Types -- Watermarking -- Watermarking Types -- Compare Steganography and Watermarking -- Anonymity -- Summary -- References -- Bibliography -- 2.Data Hiding Using Simple Methods -- Introduction -- Bit-Shifting Data Hiding -- Hiding Data Inside Rich Text Format Documents -- Renaming Files -- Matching File Signatures and File Extensions -- Hiding Data in Compressed Files -- Hiding Data Through File Splitting -- Note continued: Hiding Data in Microsoft® Office Documents -- Hidden Text -- Hidden Data Within Document Attributes (Metadata) -- White Font -- Hiding Data by Exploiting OLE Structured Storage -- Self-Encrypt MS Office® Document -- Hiding Inside MS Excel® Spreadsheet -- Data Hiding Inside Image Attributes (Image Metadata) -- Summary -- References -- Bibliography -- 3.Data Hiding Using Steganographic Techniques -- Introduction -- Text Steganography -- Format-Based Steganography -- Random and Statistical Generation -- Linguistic-Based Methods -- Hiding Inside MS Office® Documents Based on OOXML File Format -- Webpage Text Steganography -- Hiding Secret Messages Inside Twitter Updates -- Image Steganography -- Digital Image Basic Concepts -- Image Steganographic Techniques -- Digital Media Steganography Tools -- Data Hiding Inside Audio Files -- Audio Files Basic Concepts -- Audio Steganography Types -- Data Hiding Using Other Digital Media Types -- Note continued: Data Hiding Inside PDF Documents -- Data Hiding Inside Program Binaries -- Summary -- References -- Bibliography -- 4.Data Hiding Under Windows® OS File Structure -- Introduction -- Data Hiding Using Alternate Data Stream -- What Is the New Technology File System? -- What Is an Alternate Data Stream? -- How Can We Use Alternate Data Streams to Hide Files? -- Hiding Executable Code in Alternate Data Stream Files -- Important Notes About Using Alternate Data Stream in Hiding Files -- How to Delete Alternate Data Stream Files -- Detecting Alternate Data Stream Files -- Data Hiding Using Stealth Alternate Data Stream -- Hiding Data Inside Windows® Restoration Points -- Hiding Data Inside Windows® Registry -- Hiding in a File's Slack Space -- Understanding Hard Disk Drives -- File Allocation Table -- Hidden Partitions -- Hidden Partitions Under Windows® OS -- Creating a Hidden Partition Within a USB Zip Drive -- Data Hiding Within Master File Table -- Note continued: Data Hiding in Disk Bad Blocks -- Data Hiding Under Computer Hardware Level -- Data Hiding Inside Host Protected Area -- Hiding Data in Device Configuration Overlay -- Summary -- References -- Bibliography -- 5.Data Hiding Using Encryption Techniques -- Introduction -- Security Awareness Corners -- Human Security -- Device Security -- Message Security -- Network Security -- Anonymous Operating System -- Tails -- Ubuntu Privacy Remix -- Other Security Distributions -- Advice When Using Security Operating Systems -- Portable Stick Computer -- Disk Encryption -- Encrypting Partitions Using BitLocker -- Creating Encrypted Vaults -- Single File Encryption -- Cloud Storage Encryption -- Discussion of Security Level in Disk Encryption -- Anonymize Your Location Online -- Using the TOR Browser -- Virtual Private Networks -- SSH Tunneling -- Using Proxy Server -- Anonymous Search Engine -- Web Browser Privacy Add-Ons -- Secure Anonymous File Sharing -- Note continued: Encrypting Email Communications -- Email Encryption Using Gpg4Win -- Open PGP Encryption for Webmail Using the Mailvelope Browser Extension -- Secure Web Mail Providers -- Encrypt Instant Messaging, Video Calls, and VOIP Sessions -- What Are the Risks? -- Off-the-Record-Messaging and Pidgin -- A Secure Video Calling Service Using Gruveo -- A Secure Anonymous Calling Service Using GHOST CALL -- Retroshare Secure Social Platform -- TOR Messenger -- Complete Anonymous IM Using Ricochet -- Create and Maintain Secure Passwords -- Password Best Practice -- Password Generation Tools -- Password-Saving Techniques -- Password Manager Tools -- Miscellaneous Security Hints and Best Practices -- Summary -- References -- Bibliography -- 6.Data Hiding Forensics -- Introduction -- Understanding Computer Forensics -- Computer Forensic Process -- Differences Between Computer Forensics and Other Computing Domains -- The Need for Digital Evidence -- Steganalysis -- Note continued: Steganalysis Methods -- Destroying Hidden Data -- Steganalysis of Digital Media Files -- Text Document Steganalysis -- Image Forensics -- Audio Forensics -- Video Forensics -- Digital Files Metadata Forensic -- Windows Forensics -- Capture Volatile Memory -- Capture Disk Drive -- Deleted Files Recovery -- Windows Registry Analysis -- Forensic Analysis of Windows Prefetch Files -- Windows Minidump Files Forensics -- Windows Thumbnail Forensics -- File Signature Analysis -- File Attributes Analysis -- Discover Hidden Partitions -- Detect Alternative Data Streams -- Investigating Windows Volume Shadow Copy -- Virtual Memory Analysis -- Windows Password Cracking -- Host Protected Area and Device Configuration Relay Forensic -- Examining Encrypted Files -- Summary -- References -- Bibliography -- 7.Antiforensic Techniques -- Introduction -- Antiforensics Goals -- Data Hiding General Advice -- Data Destruction -- Hard Disk Wiping -- Note continued: Manipulating Digital File Metadata -- Windows Antiforensics Techniques -- Configure Windows for Better Privacy -- Disable Recycle Bin -- Registry Antiforensics -- Disable Windows Hibernation -- Disable Windows Virtual Memory (Paging File) -- Disable System Restore Points and File History -- Disable Windows Thumbnail Cache -- Disable Windows Prefetch Feature -- Disable Windows Logging -- Disable Windows® Password Hash Extraction -- Clearing Digital Footprints -- Live CDs and Bootable USB Tokens -- Virtual Machines -- Using Portable Applications -- Direct Attack Against Forensic Software -- Summary -- References -- Bibliography -- 8.Future Trends -- Introduction -- The Future of Encryption -- Data Stored in Cloud Computing -- Visualization Technology -- Data Hiding in Enterprise Networks -- Data Concealment -- Data Leakage Prevention -- Streaming Protocols -- Wireless Networks and Future Networking Protocols -- Data Hiding in Mobile Devices -- Note continued: Anonymous Networks -- Summary -- References -- Bibliography.
Summary: ere are many techniques currently available to encrypt and secure our communication channels. Data hiding techniques can take data confidentiality to a new level as we can hide our secret messages in ordinary, honest-looking data files. Steganography is the science of hiding data. It has several categorizations, and each type has its own techniques in hiding. Steganography has played a vital role in secret communication during wars since the dawn of history. In recent days, few computer users successfully manage to exploit their Windows® machine to conceal their private data. Businesses also have deep concerns about misusing data hiding techniques. Many employers are amazed at how easily their valuable information can get out of their company walls. In many legal cases a disgruntled employee would successfully steal company private data despite all security measures implemented using simple digital hiding techniques. Human right activists who live in countries controlled by oppressive regimes need ways to smuggle their online communications without attracting surveillance monitoring systems, continuously scan in/out internet traffic for interesting keywords and other artifacts. The same applies to journalists and whistleblowers all over the world. Computer forensic investigators, law enforcements officers, intelligence services and IT security professionals need a guide to tell them where criminals can conceal their data in Windows® OS & multimedia files and how they can discover concealed data quickly and retrieve it in a forensic way. Data Hiding Techniques in Windows OS is a response to all these concerns. Data hiding topics are usually approached in most books using an academic method, with long math equations about how each hiding technique algorithm works behind the scene, and are usually targeted at people who work in the academic arenas. This book teaches professionals and end users alike how they can hide their data and discover the hidden ones using a variety of ways under the most commonly used operating system on earth, Windows®. This is your hands-on guide to understand, detect and use today?s most popular techniques in hiding and exploring hidden data under Windows® machines, covering all Windows® versions from XP till Windows® 10. Starting with the Roman Emperor, Julius Caesar, and his simple cipher method to the surveillance programs deployed by NSA, to monitor communication and online traffic, this book will teach you everything you need to know to protect your digital data using steganographic & anonymity cryptographic techniques. Written in a simple style and requiring only basic knowledge of main Windows® functions, techniques are presented in a way to easily implement them directly on your computer. Key Features A brief history of steganography since early inception to present day Simple methods to hide your data without using any third party tools, and different ways to investigate and explore hidden data Exploiting multimedia files to conceal data using text, image, video and audio steganography Exploiting Windows® NTFS file system to hide your secret data A wide array of encryption techniques to protect your confidential data and securing your online communications Using cryptographic anonymity tools to conceal your identity online Explaining how hidden data could be used to plant a malware and launch sophisticated attacks against computer systems Methods to crack steganography and cryptography A chapter dedicated to anti-forensic techniques, detailing how to conceal data when using a Windows® machine
Tags from this library: No tags from this library for this title. Log in to add tags.
    Average rating: 0.0 (0 votes)
Item type Current location Home library Call number Status Date due Barcode Item holds
BOOK BOOK COLLEGE LIBRARY
COLLEGE LIBRARY
SUBJECT REFERENCE
005.82 H2758 2017 (Browse shelf) Available CITU-CL-47999
Total holds: 0

About the Author
Nihad Hassan

Nihad A. Hassan is an independent computer security & forensic consultant. He has been actively conducting research on computer forensic techniques for more than 8 years. Nihad focuses on the subject of computer forensics and anti-forensic techniques in Windows® OS, especially the digital steganography techniques.

Nihad has completed numerous technical security consulting engagements involving security architectures, penetration testing, Windows® OS diagnostic reviews, disaster recovery planning and computer crime investigation.

He has written thousands of pages of technical documentation for different global companies in the IT and cybersecurity fields in both languages, Arabic & English. His writing style highlights the fact that information is simplified and is presented it in an easy manner, which gives him a wide reputation in this field.

Nihad believes that security concerns are best addressed by well-prepared and security-savvy individuals. He also enjoys being involved in security training, education, motivation. His current work is focused on network security, penetration testing, computer forensic, anti-forensics techniques and web security assessment. Nihad has a BSc honors degree in computer science from the University of Greenwich in the UK.



Affiliations and Expertise

IT Security & Digital Forensics Consultant, Founder of www.DarknessGate.com
Rami Hijazi

Rami Hijazi is the General Manager of MERICLER Inc., an education and corporate training firm in Toronto, Canada. Rami is an experienced IT professional who lectures on a wide array of topics, including Object-Oriented Programming, Java, eCommerce, Agile development, database design, and data handling analysis. Rami also works as consultant to Cyber Boundaries Inc., where he is involved in the design of encryption systems and wireless networks, intrusion detection and data breach tracking, as well as planning and development advice for IT departments concerning contingency planning.
Affiliations and Expertise

Information security consultant, General Manager, MERICLER Inc., Canada

Includes bibliographical references and index.

1.Introduction and Historical Background --
Introduction --
Classical Cipher Types --
Substitution Cipher --
Transposition Cipher --
Other Ciphers and Codes --
Difference Between Substitution and Transposition Cipher --
Practicing Old Ciphers Using Modem Computing --
Modern Cryptography Systems --
Secret Key Cryptography --
Public Key Cryptography --
Digital Signature --
Cryptographic Hash Function --
Steganography --
What Is Steganography? --
Comparing Steganography and Cryptography --
Steganography Types --
Watermarking --
Watermarking Types --
Compare Steganography and Watermarking --
Anonymity --
Summary --
References --
Bibliography --
2.Data Hiding Using Simple Methods --
Introduction --
Bit-Shifting Data Hiding --
Hiding Data Inside Rich Text Format Documents --
Renaming Files --
Matching File Signatures and File Extensions --
Hiding Data in Compressed Files --
Hiding Data Through File Splitting --
Note continued: Hiding Data in Microsoft® Office Documents --
Hidden Text --
Hidden Data Within Document Attributes (Metadata) --
White Font --
Hiding Data by Exploiting OLE Structured Storage --
Self-Encrypt MS Office® Document --
Hiding Inside MS Excel® Spreadsheet --
Data Hiding Inside Image Attributes (Image Metadata) --
Summary --
References --
Bibliography --
3.Data Hiding Using Steganographic Techniques --
Introduction --
Text Steganography --
Format-Based Steganography --
Random and Statistical Generation --
Linguistic-Based Methods --
Hiding Inside MS Office® Documents Based on OOXML File Format --
Webpage Text Steganography --
Hiding Secret Messages Inside Twitter Updates --
Image Steganography --
Digital Image Basic Concepts --
Image Steganographic Techniques --
Digital Media Steganography Tools --
Data Hiding Inside Audio Files --
Audio Files Basic Concepts --
Audio Steganography Types --
Data Hiding Using Other Digital Media Types --
Note continued: Data Hiding Inside PDF Documents --
Data Hiding Inside Program Binaries --
Summary --
References --
Bibliography --
4.Data Hiding Under Windows® OS File Structure --
Introduction --
Data Hiding Using Alternate Data Stream --
What Is the New Technology File System? --
What Is an Alternate Data Stream? --
How Can We Use Alternate Data Streams to Hide Files? --
Hiding Executable Code in Alternate Data Stream Files --
Important Notes About Using Alternate Data Stream in Hiding Files --
How to Delete Alternate Data Stream Files --
Detecting Alternate Data Stream Files --
Data Hiding Using Stealth Alternate Data Stream --
Hiding Data Inside Windows® Restoration Points --
Hiding Data Inside Windows® Registry --
Hiding in a File's Slack Space --
Understanding Hard Disk Drives --
File Allocation Table --
Hidden Partitions --
Hidden Partitions Under Windows® OS --
Creating a Hidden Partition Within a USB Zip Drive --
Data Hiding Within Master File Table --
Note continued: Data Hiding in Disk Bad Blocks --
Data Hiding Under Computer Hardware Level --
Data Hiding Inside Host Protected Area --
Hiding Data in Device Configuration Overlay --
Summary --
References --
Bibliography --
5.Data Hiding Using Encryption Techniques --
Introduction --
Security Awareness Corners --
Human Security --
Device Security --
Message Security --
Network Security --
Anonymous Operating System --
Tails --
Ubuntu Privacy Remix --
Other Security Distributions --
Advice When Using Security Operating Systems --
Portable Stick Computer --
Disk Encryption --
Encrypting Partitions Using BitLocker --
Creating Encrypted Vaults --
Single File Encryption --
Cloud Storage Encryption --
Discussion of Security Level in Disk Encryption --
Anonymize Your Location Online --
Using the TOR Browser --
Virtual Private Networks --
SSH Tunneling --
Using Proxy Server --
Anonymous Search Engine --
Web Browser Privacy Add-Ons --
Secure Anonymous File Sharing --
Note continued: Encrypting Email Communications --
Email Encryption Using Gpg4Win --
Open PGP Encryption for Webmail Using the Mailvelope Browser Extension --
Secure Web Mail Providers --
Encrypt Instant Messaging, Video Calls, and VOIP Sessions --
What Are the Risks? --
Off-the-Record-Messaging and Pidgin --
A Secure Video Calling Service Using Gruveo --
A Secure Anonymous Calling Service Using GHOST CALL --
Retroshare Secure Social Platform --
TOR Messenger --
Complete Anonymous IM Using Ricochet --
Create and Maintain Secure Passwords --
Password Best Practice --
Password Generation Tools --
Password-Saving Techniques --
Password Manager Tools --
Miscellaneous Security Hints and Best Practices --
Summary --
References --
Bibliography --
6.Data Hiding Forensics --
Introduction --
Understanding Computer Forensics --
Computer Forensic Process --
Differences Between Computer Forensics and Other Computing Domains --
The Need for Digital Evidence --
Steganalysis --
Note continued: Steganalysis Methods --
Destroying Hidden Data --
Steganalysis of Digital Media Files --
Text Document Steganalysis --
Image Forensics --
Audio Forensics --
Video Forensics --
Digital Files Metadata Forensic --
Windows Forensics --
Capture Volatile Memory --
Capture Disk Drive --
Deleted Files Recovery --
Windows Registry Analysis --
Forensic Analysis of Windows Prefetch Files --
Windows Minidump Files Forensics --
Windows Thumbnail Forensics --
File Signature Analysis --
File Attributes Analysis --
Discover Hidden Partitions --
Detect Alternative Data Streams --
Investigating Windows Volume Shadow Copy --
Virtual Memory Analysis --
Windows Password Cracking --
Host Protected Area and Device Configuration Relay Forensic --
Examining Encrypted Files --
Summary --
References --
Bibliography --
7.Antiforensic Techniques --
Introduction --
Antiforensics Goals --
Data Hiding General Advice --
Data Destruction --
Hard Disk Wiping --
Note continued: Manipulating Digital File Metadata --
Windows Antiforensics Techniques --
Configure Windows for Better Privacy --
Disable Recycle Bin --
Registry Antiforensics --
Disable Windows Hibernation --
Disable Windows Virtual Memory (Paging File) --
Disable System Restore Points and File History --
Disable Windows Thumbnail Cache --
Disable Windows Prefetch Feature --
Disable Windows Logging --
Disable Windows® Password Hash Extraction --
Clearing Digital Footprints --
Live CDs and Bootable USB Tokens --
Virtual Machines --
Using Portable Applications --
Direct Attack Against Forensic Software --
Summary --
References --
Bibliography --
8.Future Trends --
Introduction --
The Future of Encryption --
Data Stored in Cloud Computing --
Visualization Technology --
Data Hiding in Enterprise Networks --
Data Concealment --
Data Leakage Prevention --
Streaming Protocols --
Wireless Networks and Future Networking Protocols --
Data Hiding in Mobile Devices --
Note continued: Anonymous Networks --
Summary --
References --
Bibliography.

ere are many techniques currently available to encrypt and secure our communication channels. Data hiding techniques can take data confidentiality to a new level as we can hide our secret messages in ordinary, honest-looking data files.

Steganography is the science of hiding data. It has several categorizations, and each type has its own techniques in hiding. Steganography has played a vital role in secret communication during wars since the dawn of history. In recent days, few computer users successfully manage to exploit their Windows® machine to conceal their private data.

Businesses also have deep concerns about misusing data hiding techniques. Many employers are amazed at how easily their valuable information can get out of their company walls. In many legal cases a disgruntled employee would successfully steal company private data despite all security measures implemented using simple digital hiding techniques.

Human right activists who live in countries controlled by oppressive regimes need ways to smuggle their online communications without attracting surveillance monitoring systems, continuously scan in/out internet traffic for interesting keywords and other artifacts. The same applies to journalists and whistleblowers all over the world.

Computer forensic investigators, law enforcements officers, intelligence services and IT security professionals need a guide to tell them where criminals can conceal their data in Windows® OS & multimedia files and how they can discover concealed data quickly and retrieve it in a forensic way.

Data Hiding Techniques in Windows OS is a response to all these concerns. Data hiding topics are usually approached in most books using an academic method, with long math equations about how each hiding technique algorithm works behind the scene, and are usually targeted at people who work in the academic arenas. This book teaches professionals and end users alike how they can hide their data and discover the hidden ones using a variety of ways under the most commonly used operating system on earth, Windows®.

This is your hands-on guide to understand, detect and use today?s most popular techniques in hiding and exploring hidden data under Windows® machines, covering all Windows® versions from XP till Windows® 10. Starting with the Roman Emperor, Julius Caesar, and his simple cipher method to the surveillance programs deployed by NSA, to monitor communication and online traffic, this book will teach you everything you need to know to protect your digital data using steganographic & anonymity cryptographic techniques. Written in a simple style and requiring only basic knowledge of main Windows® functions, techniques are presented in a way to easily implement them directly on your computer.


Key Features

A brief history of steganography since early inception to present day
Simple methods to hide your data without using any third party tools, and different ways to investigate and explore hidden data
Exploiting multimedia files to conceal data using text, image, video and audio steganography
Exploiting Windows® NTFS file system to hide your secret data
A wide array of encryption techniques to protect your confidential data and securing your online communications
Using cryptographic anonymity tools to conceal your identity online
Explaining how hidden data could be used to plant a malware and launch sophisticated attacks against computer systems
Methods to crack steganography and cryptography
A chapter dedicated to anti-forensic techniques, detailing how to conceal data when using a Windows® machine

There are no comments for this item.

to post a comment.