Perfectly Secure Steganography Using Minimum Entropy Coupling
Christian Schröder de Witt, Samuel Sokota, J. Zico Kolter, Jakob Nicolaus Foerster, Martin Strohmeier
Abstract
Steganography is the practice of encoding secret information into innocuous content in such a manner that an adversarial third party would not realize that there is hidden meaning. While this problem has classically been studied in security literature, recent advances in generative models have led to a shared interest among security and machine learning researchers in developing scalable steganography techniques. In this work, we show that a steganography procedure is perfectly secure under Cachin (1998)'s information-theoretic model of steganography if and only if it is induced by a coupling. Furthermore, we show that, among perfectly secure procedures, a procedure maximizes information throughput if and only if it is induced by a minimum entropy coupling. These insights yield what are, to the best of our knowledge, the first steganography algorithms to achieve perfect security guarantees for arbitrary covertext distributions. To provide empirical validation, we compare a minimum entropy coupling-based approach to three modern baselines -- arithmetic coding, Meteor, and adaptive dynamic grouping -- using GPT-2, WaveRNN, and Image Transformer as communication channels. We find that the minimum entropy coupling-based approach achieves superior encoding efficiency, despite its stronger security constraints. In aggregate, these results suggest that it may be natural to view information-theoretic steganography through the lens of minimum entropy coupling.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 923330cc-bf65-4f59-bfbc-81fb53900007Cited by top-tier papers20
- Secret Collusion among AI Agents: Multi-Agent Deception via SteganographySumeet Ramesh Motwani, Mikhail Baranchuk, Martin Strohmeier, Vijay Bolina et al.NeurIPS 2024 · 140 citations
- Prompting a Pretrained Transformer Can Be a Universal ApproximatorAleksandar Petrov, Philip Torr, Adel BibiICML 2024 · 19 citations
- Pseudorandom Error-Correcting CodesMiranda Christ, Sam GunnCRYPTO 2024 · 17 citations
- Minimum Entropy Coupling with BottleneckM. Reza Ebrahimi, Jun Chen, Ashish KhistiNeurIPS 2024 · 11 citations
- Unelicitable Backdoors via Cryptographic Transformer CircuitsAndis Draguns, Andrew Gritsevskiy, Sumeet Ramesh Motwani, Christian Schröder de WittNeurIPS 2024 · 6 citations
Builds on3
- The Curious Case of Neural Text DegenerationAri Holtzman, Jan Buys, Li Du, Maxwell Forbes et al.ICLR 2020 · 4,112 citations
- Meteor: Cryptographically Secure Steganography for Realistic DistributionsGabriel Kaptchuk, Tushar M. Jois, Matthew Green, Aviel D. RubinCCS 2021 · 50 citations
- Communicating via Markov Decision ProcessesSamuel Sokota, Christian A. Schröder de Witt, Maximilian Igl, Luisa M. Zintgraf et al.ICML 2022 · 14 citations
Related papers
- Efficient Provably Secure Linguistic Steganography via Range CodingRuiyi Yan, Yugo MurawakiACL 2026
- SparSamp: Efficient Provably Secure Steganography Based on Sparse SamplingYaofei Wang, Gang Pei, Kejiang Chen, Jinyang Ding et al.USENIX Security 2025
- StegaStyleGAN: Towards Generic and Practical Generative Image SteganographyWenkang Su, Jiangqun Ni, Yiyan SunAAAI 2024
- Neural Cover Selection for Image SteganographyKarl Chahine, Hyeji KimNeurIPS 2024 · 2 citations
- Generative Steganography NetworkPing Wei, Sheng Li, Xinpeng Zhang, Ge Luo et al.ACM MM 2022 · 67 citations
