Welcome to the Steganography Analysis and Research Center
A Backbone Security Center of Excellence
Products > Steganography Analyzer Signature Scanner (StegAlyzerSS)
StegAlyzerSS
Steganography Analyzer Signature Scanner
Detect files containing steganography and extract the hidden information!
This seemingly innocuous image looks like an innocent picture of a train. Actually, it contains an image representing simulated child pornography. Critical evidence may be overlooked in a forensic examination without specialized steganalysis tools.
"Criminals are increasingly using anti-forensics tools to conceal evidence of their crimes. StegAlyzerSS helps me find key evidence hidden with digital steganography that would have been missed by traditional forensic tools." -- Computer Forensics Professional
BENEFITS
•Scan files to discover hidden information to use as evidence of criminal activity that would have otherwise gone unnoticed
•Discover evidence of covert communications
•Protect your organization’s intellectual property
•Determine if trusted insiders are using covert techniques to steal sensitive and proprietary information
•Enforce organizational policy prohibiting use of digital steganography or other data-hiding applications
•Automated Extraction Algorithms allow examiners to “point-click-and-extract” hidden information, a feature exclusive to StegAlyzerSS
DESCRIPTION:
StegAlyzerSS is a digital forensic analysis tool designed to extend the scope of traditional digital forensic examinations by allowing the examiner to scan suspect media or forensic images of suspect media for over 55 uniquely identifiable hexadecimal byte patterns, or known signatures, left inside files when particular steganography applications are used to embed hidden information within them. Automated extraction algorithms unique to StegAlyzerSS can be used to recover hidden information.
StegAlyzerSS extends the signature scanning capability by also allowing the examiner to use other techniques for detecting whether information may have been appended to or hidden within potential carrier files.
StegAlyzerSS was found to be effective for identifying files that contain hidden steganographic data by the Defense Cyber Crime Institute (DCCI) and the CyberScience Laboratory (CSL).
Product highlights in StegAlyzerSS:
•Versions available for both 32-bit and 64-bit forensic workstations
•Case generation and management
•Mount and scan forensic images of storage media in EnCase, ISO, RAW (dd), SMART, SafeBack, Paraben Forensic Replicator, and Paraben Forensic Storage formats
•Automated scanning of an entire file system, individual directories, or individual files on suspect media for the presence of steganography application signatures
•Identify files that have information appended beyond a file’s end-of-file marker with the Append Analysis feature and analyze the files in a hex editor view to determine the nature of the hidden information
•Identify files that have information embedded using Least Significant Bit (LSB) image encoding with the LSB Analysis feature and extract and rearrange the LSBs for analysis in a hex editor view to detect hidden information
•Exclusive Automated Extraction Algorithm functionality for selected steganography applications gives examiners a “point-click-and-extract” interface to easily extract hidden information from suspect files
•Extensive report generation in HTML format
•Automated logging of key events and information of potential evidentiary value
•Export session activity and evidence logs in comma separated value (.csv) format
•Integrated help feature to explain specific features and functions
StegAlyzerSS is available for a license fee The license includes all product updates for one year from date of license purchase. License extension agreements available.
Volume license, government, and educational discounts are available. For more information, please call or email us at
--------------------------------------------------------------------------------