TY - JOUR
T1 - AIPISteg
T2 - an active IP identification based steganographic method
AU - Abdullaziz, Osamah Ibrahiem
AU - Goh, Vik Tor
AU - Ling, Huo Chong
AU - Wong, Kok Sheik
N1 - Funding Information:
This work was supported by the University of Malaya HIR under Grant UM.C/625/1/HIR/MOHE/FCSIT/01, B000001-22001 (Project title: Unified Scalable Information Hiding).
Publisher Copyright:
© 2016 Elsevier Ltd. All rights reserved.
Copyright:
Copyright 2016 Elsevier B.V., All rights reserved.
PY - 2016/3
Y1 - 2016/3
N2 - IP identification (IPID) is an IP header field which is designed to identify a packet in a communication session. The main purpose of IPID is to recover from IP fragmentation. To the best of our knowledge, most existing IPID based information hiding methods assume that the IPID number is a pseudo random number, which is found to be false. In this paper, we propose a steganographic method by exploiting the IPID field while considering the information from the user data field. First, we analyze the IPID distribution of various operating systems. Subsequently, we put forward a simple data embedding method, which is then refined to mimic the ordinary IPID traffic. Experiments are carried out and the results empirically prove that the proposed method is of high undetectability as compared to the existing IPID based steganographic methods.
AB - IP identification (IPID) is an IP header field which is designed to identify a packet in a communication session. The main purpose of IPID is to recover from IP fragmentation. To the best of our knowledge, most existing IPID based information hiding methods assume that the IPID number is a pseudo random number, which is found to be false. In this paper, we propose a steganographic method by exploiting the IPID field while considering the information from the user data field. First, we analyze the IPID distribution of various operating systems. Subsequently, we put forward a simple data embedding method, which is then refined to mimic the ordinary IPID traffic. Experiments are carried out and the results empirically prove that the proposed method is of high undetectability as compared to the existing IPID based steganographic methods.
KW - IP Fragmentation
KW - IP Identification
KW - Network Steganography
KW - Pseudo Random Number
UR - https://www.scopus.com/pages/publications/84958247153
U2 - 10.1016/j.jnca.2015.10.019
DO - 10.1016/j.jnca.2015.10.019
M3 - Article
AN - SCOPUS:84958247153
SN - 1084-8045
VL - 63
SP - 150
EP - 158
JO - Journal of Network and Computer Applications
JF - Journal of Network and Computer Applications
ER -