Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
tird — Steganographic storage & File encryption tool | Kitploit
Tools/GitHubGitHub/hakavlad/tird
Encryption/Decryption ToolsForensicsSteganographyData RecoveryCryptographyPrivacy
GitHubhakavlad/tird

tird

Steganographic storage & File encryption tool

View Repository
222634 months agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

🏠 Home    📑 Specification    📜 man page    📄 Input Options    📖 Tutorial    ❓ FAQ    📥 Install


Logo: random data visualization

tird & tirdFS

Releases PyPI

tird /tɪrd/ (an acronym for "this is random data") is a file encryption tool that minimizes metadata and hides encrypted data.

With tird, you can:

  1. Create files filled with random data to use as containers or keyfiles.
  2. Overwrite the contents of block devices and regular files with random data to prepare containers or destroy residual data.
  3. Encrypt file contents and comments with keyfiles and passphrases. The encrypted data format (cryptoblob) is a padded uniform random blob (PURB): it looks like random data and has a randomized size. This reduces metadata leakage from file format and length and allows cryptoblobs to be hidden among random data.
  4. Create steganographic (hidden, undetectable) user-driven filesystems (tirdFS) inside container files and block devices. Unlike VeraCrypt and Shufflecake, tirdFS containers do not contain headers; the user specifies the data locations inside the container and is responsible for keeping those locations separate. Any random-looking region of a file or block device may be used as a container.
  5. Prevent fast access to decrypted data using time-lock encryption.

tird offers built-in plausible deniability, even when encrypted files are stored outside containers. It also helps resist coercive key-disclosure attacks (rubber-hose cryptanalysis, xkcd 538).

[!WARNING] Before using tird, please read the "Warnings" section. Security depends not only on the tool but on your actions: secure key storage, operating in a safe environment, and avoiding debug mode with real data.

Format stabilization and a formal specification are planned for v1.0.0.

Goals

  1. File protection: Ensure protection of individual files, including:
    • Confidentiality and integrity using authenticated symmetric encryption.
    • Minimize metadata leakage, including hiding the presence of encrypted data.
    • Prevent or resist coercive attacks.
  2. Stable format: Maintain a stable encrypted-data format without cryptographic agility for long-term storage.
  3. Simplicity: Prioritize simplicity and avoid feature creep; refuse to implement features not directly related to the primary security goals.

Features

  • PURB-format encrypted blobs: randomized size and uniformly random contents; metadata-limited (only total size leaks — no headers, types, or plaintext hints).
  • Padded and encrypted comments: no plaintext hints about content.
  • Hidden data embedding (optional): conceal cryptoblobs inside random/encrypted containers for plausible deniability.
  • Time-lock encryption (optional): slow offline PoW-based key derivation to delay decryption (anti-coercion).
  • Robust authenticated encryption: fully committing, quantum-safe ChaCha20-BLAKE2b AEAD.
  • Strong key stretching: Argon2id (libsodium "sensitive" profile) — 1 GiB memory, 1 lane, 4 passes (default and minimum).
  • Arbitrary key material: derive keys from passphrases, files, block devices, or directories — order does not matter.
  • Prompt-based CLI: intuitive and interactive, no flags to memorize.
  • [TODO] Stable, documented format: planned for long-term archival and interoperability.

Usage

You don't need to memorize command-line options to use tird. This tool features a prompt-based CLI: simply start it, select a menu option, and answer the questions that will follow.

$ tird

                       MENU
    ———————————————————————————————————————————
    0. Exit              1. Info & Warnings
    2. Encrypt           3. Decrypt
    4. Embed             5. Extract
    6. Encrypt & Embed   7. Extract & Decrypt
    8. Create w/ Random  9. Overwrite w/ Random
    ———————————————————————————————————————————
A0. SELECT AN OPTION [0-9]:

Input Options

There are 4 groups of input options: A (Action), D (Data), K (Keys), P (Proceed). They are numbered for ease of description.

+——————————————————————+————————————————————————+
| A0. SELECT AN OPTION | A. Select an action    |
+——————————————————————+————————————————————————+
| D1. INPUT FILE PATH  |                        |
| D2. COMMENTS         | D. Enter data,         |
| D3. OUTPUT FILE PATH |    data location,      |
| D4. OUTPUT FILE SIZE |    data size           |
| D5. START POSITION   |                        |
| D6. END POSITION     |                        |
+——————————————————————+————————————————————————+
| K1. KEYFILE PATH     | K. Enter values        |
| K2. PASSPHRASE       |    related to          |
| K3. TIME COST        |    key derivation      |
+——————————————————————+————————————————————————+
| P0. PROCEED?         | P. Confirm to continue |
+——————————————————————+————————————————————————+

A detailed description of these options with examples can be found here.

Payload

The payload that will be encrypted during cryptoblob creation consists of:

  • Contents of one file (optional): A regular file or a block device (entire disk/partition). If omitted, an empty file payload is encrypted.
  • Comments (optional): Arbitrary UTF‑8 string, up to 1 KiB. By default, the input file name is used. Decrypted comments are shown upon decryption.

Specifying the payload in the UI looks as follows:

D1. FILE TO ENCRYPT (OPT): files.zip
    I: path: 'files.zip'; size: 2,824,230,648 B (2.6 GiB)
D2. COMMENTS (DEFAULT='files.zip'): The X-Files, zip (секретные материалы)
    I: comments will be shown as ['The X-Files, zip (секретные материалы)']

Input Keying Material

tird provides the option to use the contents of keyfiles and a passphrase to derive one-time keys.

Download Tool