{"id":13540243,"url":"https://github.com/paradoxis/stegcracker","last_synced_at":"2025-04-02T07:30:42.742Z","repository":{"id":57471388,"uuid":"107186881","full_name":"Paradoxis/StegCracker","owner":"Paradoxis","description":"Steganography brute-force utility to uncover hidden data inside files","archived":true,"fork":false,"pushed_at":"2020-12-25T23:00:55.000Z","size":1705,"stargazers_count":565,"open_issues_count":0,"forks_count":107,"subscribers_count":19,"default_branch":"master","last_synced_at":"2025-03-05T14:47:01.024Z","etag":null,"topics":["brute-force","ctf","ctf-tools","penetration-testing","pentesting","steganography","stegcracker","steghide"],"latest_commit_sha":null,"homepage":"https://blog.paradoxis.nl/stegcracker-2-released-f03771ba855b","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/Paradoxis.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE.md","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2017-10-16T21:50:49.000Z","updated_at":"2025-03-04T04:50:13.000Z","dependencies_parsed_at":"2022-09-10T11:41:48.461Z","dependency_job_id":null,"html_url":"https://github.com/Paradoxis/StegCracker","commit_stats":null,"previous_names":[],"tags_count":13,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Paradoxis%2FStegCracker","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Paradoxis%2FStegCracker/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Paradoxis%2FStegCracker/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/Paradoxis%2FStegCracker/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/Paradoxis","download_url":"https://codeload.github.com/Paradoxis/StegCracker/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":246774216,"owners_count":20831494,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["brute-force","ctf","ctf-tools","penetration-testing","pentesting","steganography","stegcracker","steghide"],"created_at":"2024-08-01T09:01:43.393Z","updated_at":"2025-04-02T07:30:41.651Z","avatar_url":"https://github.com/Paradoxis.png","language":"Python","funding_links":[],"categories":["\u003ca id=\"de81f9dd79c219c876c1313cd97852ce\"\u003e\u003c/a\u003e破解\u0026\u0026Crack\u0026\u0026爆破\u0026\u0026BruteForce","\u003ca id=\"73c3c9225523cbb05333246f23342846\"\u003e\u003c/a\u003e工具"],"sub_categories":["\u003ca id=\"f2c76d99a0b1fda124d210bd1bbc8f3f\"\u003e\u003c/a\u003eWordlist生成","\u003ca id=\"53084c21ff85ffad3dd9ce445684978b\"\u003e\u003c/a\u003e未分类的"],"readme":"# StegCracker\n[![Build Status](https://travis-ci.org/Paradoxis/StegCracker.svg?branch=master)](https://travis-ci.org/Paradoxis/StegCracker)\n[![PyPI version](https://badge.fury.io/py/stegcracker.svg)](https://badge.fury.io/py/stegcracker)\n[![codecov](https://codecov.io/gh/Paradoxis/StegCracker/branch/master/graph/badge.svg)](https://codecov.io/gh/Paradoxis/StegCracker)\n[![pulls](https://img.shields.io/docker/pulls/paradoxis/stegcracker.svg)](https://hub.docker.com/r/paradoxis/stegcracker)\n\nSteganography brute-force utility to uncover hidden data inside files. \u003cbr\u003e\nLooking for the Docker repository? You can find it [here](https://hub.docker.com/r/paradoxis/stegcracker)\n\n## Deprecation\nStop wasting time and CPU, use [stegseek](https://github.com/RickdeJager/stegseek) instead! Not convinced? Look at these benchmarks (stolen with love):\n\n| password    | Line        | Stegseek v0.4 | Stegcracker 2.0.9 | Stegbrute v0.1.1 (-t 8) |\n|-------------|-------------|---------------|-------------------|-------------------------|\n| \"cassandra\" | 1 000       |          0.9s |              3.1s |                    0.7s |\n| \"kupal\"     | 10 000      |          0.9s |             14.4s |                    7.1s |\n| \"sagar\"     | 100 000     |          0.9s |           2m23.0s |                 1m21.9s |\n| \"budakid1\"  | 1 000 000   |          0.9s | [p]      23m50.0s |                13m45.7s |\n| \"␣␣␣␣␣␣␣1\"  | 14 344 383  |          1.9s | [p]    5h41m52.5s | [p]          3h17m38.0s |\n\nWhile I've enjoyed building this tool it is and always will built on bad foundations. StegCracker\nstarted out as a dirty hack for a problem which didn't have any good or easy to use solutions, it's \nbiggest limiting factor however is that it relies on just spamming thousand of subprocess calls per second\nwhich (despite being optimized slightly with multiple threads) is just horrible for performance.\n\nSo, as a result, after three years of managing the project I've decided to\n[pass on the torch](https://github.com/RickdeJager/stegseek/issues/4) and officially\nretire the project. Thanks for the support and thank you [@RickdeJager](https://github.com/RickdeJager) for building a better version :tada:\n\n## Usage\nUsing stegcracker is simple, pass a file to it as it's first parameter and \noptionally pass the path to a wordlist of passwords to try as it's second \nparameter. If you don't specify the wordlist, the tool will try to use the \nbuilt-in rockyou.txt wordlist which ships with Kali Linux. If you are running a \ndifferent distribution, you can download the rockyou wordlist \n[here](https://github.com/danielmiessler/SecLists/raw/master/Passwords/Leaked-Databases/rockyou.txt.tar.gz).\n\n```\n$ stegcracker \u003cfile\u003e [\u003cwordlist\u003e]\n```\n\nOr using Docker:\n\n```\n$ docker run -v $(pwd)/data/:/data -it paradoxis/stegcracker example.jpg\n```\n\n## Requirements\nThe program requires the steghide binary, and Python 3.6 or higher to be installed. If \npython 3.6 is not installed, check out [this](https://unix.stackexchange.com/questions/332641/how-to-install-python-3-6)\nguide on how to do so. Steghide can be installed by using the following command (Kali Linux):\n\n```\n$ sudo apt-get install steghide -y\n```\n\n## Installation\nTo install StegCracker, run the following command:\n\n```\n$ pip3 install stegcracker\n```\n\nOr pull the latest docker image:\n\n```\n$ docker pull paradoxis/stegcracker\n```\n\n## Updating\nTo update StegCracker, simply pass `-U` to the installation command:\n\n```\n$ pip3 install stegcracker -U --force-reinstall\n```\n\n## Example\n\n![demo](https://github.com/Paradoxis/StegCracker/raw/master/stegcracker.gif)\n \n## FAQ / Troubleshooting\n\n* I can't install the tool with `pip3`, but python 3.6+ is installed\n    * Your pip binary might be using a different version of Python. Try installing it \n      directly through Python like so (replace \"X\" with your minor version, eg: `python3.6`): \n      `python3.X -m pip install -U stegcracker`\n      \n* I installed the tool, but when I run `stegcracker` it just returns 'command not found'\n    * Chances are your Python's `bin` directory is not in your PATH envrionment variable. \n      As a dirty fix you could add the following to your `~/.bashrc` file: `alias stegcracker='python3 -m stegcracker'`\n\n* I'm using StegCracker 1.X, how do I upgrade?\n    * If you're upgrading StegCracker from the original 1.X release, please \n      remove the existing version first using: `sudo rm --force $(which stegcracker)`\n\n* I want to run an older version of StegCracker, how do I obtain a copy?\n    * While I recommended using the latest and greatest version, you might want \n      to install an older version of StegCracker. You can do this\n      by checking out the [releases](https://github.com/Paradoxis/StegCracker/releases) \n      page. _(Note: all issues or pull requests regarding this version will be be ignored)_.\n\n* Can I run this tool on other Linux distro's? \n    * As long as you have a valid version of Python 3.6 and steghide in your path\n      it *should* work. Please note that the tool has officially been tested on \n      Kali Linux, all other platforms might be unstable. If you find a bug on \n      another distro, please submit an issue and I'll see what I can do \n      _(but do fill in the template as well)_.\n      \n* Can I run StegCracker on Windows?\n    * As far as I know there aren't any official steghide releases for Windows, \n    so as far as I'm aware: no\n\n## License\nCopyright 2020 - Luke Paris (Paradoxis)\n\nPermission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the \"Software\"), to deal in the Software without restriction, \nincluding without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to \ndo so, subject to the following conditions:\n\nThe above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.\n\nTHE SOFTWARE IS PROVIDED \"AS IS\", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND \nNONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF \nOR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fparadoxis%2Fstegcracker","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fparadoxis%2Fstegcracker","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fparadoxis%2Fstegcracker/lists"}