StegCracker -- Steganography Cracker

In the previous article we learned how we hide some secrets in media files using Steghide. In the way of penetration testing we may encounter with this type of files, in this article we are gonna cover how to recover a unknown stegnographed file. StegCracker is a tool that will help us to do that via bruteforce attack.

We first need to install StegHide in our Kali Linux system. We have a previous article on it click here to read that.

And then we open the terminal window and type following command :
sudo pip3 install stegcracker
This command will download the StegCracker on our Kali Linux system. The screenshot is following:
installing stegcracker on kali linux
 
Now StegCracker is successfully installed in our Kali Linux  system, Now we are gonna crack a steganography brute-force to uncover hidden data inside a file saved in my Desktop.


We can see that we have two files in Desktop. The picture file is the the stegno file we are gonna crack and there is a password list to perform a brute-force attack. We have learned generating custom password list in our Crunch tutorial.

Now we need to reach the directory where we have the stegno file and password list, in our case they are in Desktop so we are gonna use following command:
cd Desktop
Now the final part we are going to crack the password and uncover secret data from the image by using following command:
stegcracker any-name.jpeg wordlist.txt
The screenshot is following:

Using bigger wordlist will increase chance cracking password.

To view what get we use cat command in the new output file:
cat any-name.jpeg.out
The screenshot is following:


Yes, we did this. 
 
Liked this article then please subscribe us to get e-mail notification on our latest articles. We are also available on Twitter and GitHub join us there and be the part of our family.

For anything problem please comment down below we always reply.
author-img
Kali Linux

Comments

2 comments
Post a Comment
  • Unknown photo
    UnknownNovember 23, 2020 at 4:22 AM

    I've tried using this curl but getting a 404 message when trying to extract a message from a pic. Any thoughts?

    Delete Comment
    • Kali Linux photo
      Kali LinuxNovember 23, 2020 at 8:28 AM

      Hi, thanks for check and report. We have fixed this. Kindly check it and let us know everything is working now or not?

      Delete Comment
    google-playkhamsatmostaqltradent