• Hiding In Plain Sight

    by  • July 30, 2009 • G-I

    Rating fourhalf

    The Bottom Line

    This is an excellent book for those new to or just becoming acquainted with steganography. It introduces the concepts and techniques in an easy-to-understand way and includes tools and source code.
    Pros
    • Very good book on the subject of steganography
    • Fictionalized stories provide real-world examples
    • CDROM included with steganography tools
    Cons
    • May not be techie enough for stego experts

    Description

    • Well written book provides a great background of steganography as well as where it is going
    • Fictionalized stories provide a look at how steganography has been used by good guys and bad guys
    • Talks not only about the concepts, but gets into detail on how you can secure your own data
    • Contains a CDROM filled with steganography tools you can use with your own data
    • Appendix contains source code you can look at to help you create your own tools

    Review:

    Not knowing much other than the definition of steganography before opening this book I found it very easy to read and very informative.Eric Cole has a background in working with hidden data and his experience is translated into a book that even users new to the concepts of covert communication can understand. The fictionalized stories of actual events help the reader to understand how these tools are used every day by both the good guys and the bad guys.

    The book covers a basic history and background of cryptography and digital watermarking as well as steganography and then gets into more detail about the techniques and concepts of “stego”. It does provide source code, but may not be “meaty” enough for steganography experts.

    About

    Tony has driven security policies and technologies for antivirus and incident response for Fortune 500 companies, and he has been network administrator and technical support for smaller companies. He has written for a variety of other Web sites and publications, including BizTech Magazine, PC World, SearchSecurity.com, WindowsNetworking.com, Smart Computing magazine, and Information Security magazine. Tony is a CISSP (Certified Information Systems Security Professional) and ISSAP (Information Systems Security Architecture Professional). He is Microsoft Certified as an MCSE (Microsoft Certified Systems Engineer) and MCSA (Microsoft Certified Systems Administrator) in Windows 2000 and an MCP (Microsoft Certified Professional) in Windows NT. Tony has been recognized by Microsoft as an MVP (Most Valuable Professional) in Windows security since 2006. In addition to his Web site and magazine contributions, Tony was also tech editor of PCI Compliance (ISBN: 1597491659 ) and author of Essential Computer Security: Everyone’s Guide to E-mail, Internet, and Wireless Security (ISBN: 1597491144), coauthor of Hacker’s Challenge 3 (ISBN: 0072263040) and a contributing author to Winternals: Defragmentation, Recovery, and Administration Field Guide (ISBN: 1597490792), Combating Spyware in the Enterprise (ISBN: 1597490644) Syngress Force 2006 Emerging Threat Analysis: From Mischief to Malicious (ISBN: 1597490563), Botnets: The Killer Web Applications (ISBN: 1597491357), and AVIEN Malware Defense Guide for the Enterprise (ISBN: 1597491640).

    http://www.tonybradley.com