FINDING · EVALUATION

All prior provably-secure steganography methods introduce measurable distribution distortion: ADG achieves Max KLD of 4.54E-02 to 6.76E-02 bits/token, and Meteor with its heuristic sorting reaches Max KLD up to 9.01E+00 bits/token (Table II, GPT-2, p=0.80). These non-zero KL divergences give any statistical steganalyzer a non-negligible distinguishing advantage, violating the security definition even when average divergence appears small.

From 2023-ding-discopDiscop: Provably secure steganography in practice based on ``distribution copies'' · §V, Table II · 2023 · Symposium on Security \& Privacy

Implications

Tags

censors
generic
techniques
ml-classifiertraffic-shape
defenses
steganography

Extracted by claude-sonnet-4-6 — review before relying.