Cybercriminals using Steganography in their attacks: Researchers

Date:

Share post:

Steganography, an ancient practice of hiding secret content and text messages inside non-suspicious messages, is being increasingly used by cybercriminals to attack the businesses around the world, according to a recent research by the Kaspersky Lab. The attackers are concealing stolen data and other potentially hazardous malware inside ordinary image or video files to communicate with control and command servers.

The research suggested that such minute modifications of video or image files to infiltrate the security systems can go unnoticed by the antimalware protections and the Advanced Persistent Threat (APT) tools. The researchers of Kaspersky Lab, Alexey Shulmin and Evgeniya Krylova, told a news website, “Most modern anti-malware solutions provide little, if any, protection from steganography.”

According to researchers, Steganography has already been used in at least three major cyberespionage campaigns in the past few months. There have also been several other instances where steganography was used with other malware like Zeus banking Trojan or the Shamoon Disk-erasing malware.

The researchers pointed out that attackers usually store the data in Stegcontainers, which can take multiple forms, including audio files, text files, or domain name. However, it becomes difficult for attackers to hide the size of the container, as hiding a lot of information would cause visual distortion, according to Krylova.

Subscribe

Name(Required)
Privacy(Required)

Upcoming Events

Related articles

CyberSec Delhi Conference 2026

Securing India’s Power, Defence, Manufacturing & Industrial Ecosystems The CyberSec Delhi Conference 2026 will bring together policymakers, government stakeholders,...

SBOM, VEX, and AI: Dr. Allan Friedman on the Future of Software Supply Chain Security

A conversation on why software transparency is no longer optional, and how AI is about to make it...

Model-Borne Consequence: Why OT Security and Data Security Just Became the Same Job

For thirty years we told you industrial cybersecurity was fundamentally different from IT cybersecurity. We were right. Then...

Truth, Transparency, and a Subpoena: Inside TikTok’s Security Crisis with Roland Cloutier

How the former ByteDance CISO led a 3-billion-user platform through congressional hearings, an international ban threat, and the...