Slashdot Mirror


Program Hides Secret Messages in Executables

DmuZ writes "My friend Rakan has created a new steganographic tool named Hydan which can embed messages into an executable without altering its size. He recently presented this tool to the public for the first time at codecon. This new technique was intriguing enough to get coverage on SecurityFocus.com. The code is available here."

9 of 243 comments (clear)

  1. meow! by Anonymous Coward · · Score: -1, Offtopic

    meow!

  2. moron waiting for repLIEs by Anonymous Coward · · Score: -1, Offtopic

    Outage hits Microsoft's bCentral
    Alorie Gilbert, Staff Writer, CNET News.com

    A glitch knocked Microsoft's bCentral services offline Friday, leaving thousands of small-business Web sites inaccessible for much of the day.

    The outage, which began early Friday and was resolved late in the day, disrupted Web service for 15,000 Microsoft bCentral customers, Microsoft spokesman Rich Adolph said. "bCentral regrets the inconvenience this issue has caused to its customers," he said.
    Advertisement

    The Web site of Microsoft bCentral itself was unaffected by the outage, which Microsoft blamed on a hardware problem. Among other services, bCentral provides Web hosting to small businesses.

    Ron Hall, a bCentral customer, said his e-commerce site, vkrshop.com, was down nearly all day. He said the outage could cost him about 20 percent of his weekly sales because Friday is one of the busiest days for his site, which sells personal fitness equipment.

    Hall said the most frustrating aspect was that numerous conversations with bCentral customer service yielded no answers about the nature of the problem or when it would be resolved.

    "What's so disturbing is the lack of information from Microsoft," said Hall. "After six or seven hours of no service, customers deserve more than that."

    Friday's outage follows a string of gaffes or security glitches affecting users of various Microsoft Internet properties, including the MSN Internet portal, Hotmail e-mail system and Passport online identity authentication system.

    Last summer, another bCentral server glitch led America Online to temporarily block e-mail from Microsoft bCentral customers. According to AOL, the bCentral servers did not respond to queries from AOL to determine where the mail was coming from, leading the system to "time out."

    more inf. available at trustworthycomputing.com

  3. First Post by Anonymous Coward · · Score: -1, Offtopic

    First Post!

  4. You might have gotten hoaxed. by Sheetrock · · Score: -1, Offtopic
    This is technically impossible, for two reasons.

    First, executables are called executables because the computer interprets them. They are made of instructions, and unlike a document you cannot simply tamper with things because it will confuse the computer when it tries to run the executable.

    Second, and most importantly, the size of the file is dependent on the size of the bytes within the file. Because the bytes in the file have differing values depending on the instructions they encode, altering the data will alter the size unless you're borrowing from one byte to inflate another -- and in this case, again, you run afoul of the first problem.

    I'm surprised the editors didn't review this before approving it for posting. This is really pretty elementary to anyone who understands object code.

    --

    Try not. Do or do not, there is no try.
    -- Dr. Spock, stardate 2822-3.




  5. RPN by Anonymous Coward · · Score: -1, Offtopic

    ALG: (2+(2+(2+(2+(2+2)+2)+2)+2)+2)
    28 Keystrokes

    RPN: 2 Enter 10 ^
    5 Koystrokes

  6. Time to go to bed by fucksl4shd0t · · Score: -1, Offtopic

    Am I the only one that read the headline and wondered how you can embed a massage into an executable?

    --
    Like what I said? You might like my music
  7. In other news . . . by Pike65 · · Score: -1, Offtopic

    If you play Quake III with the levels in reverse order, you get a message from Bill Gates . . .

    --
    "If being a geek means being passionate about something, then I pity those who aren't geeks." - Pike65
  8. Re:stenography by Anonymous Coward · · Score: -1, Offtopic

    I forgot all my passwords. Just now, I forgot them all.

  9. Re:stenography by nanoakron · · Score: 0, Offtopic

    My big fat hairy american ass.

    -Nano.