
% exiftool someimage.jpg ExifTool Version Number : 12.00 File Name : someimage.jpg Directory. If you go to the ExifTool official site you can see the extensive list of media formats supported for both reading and writing. For Linux and macOS you can install it using the usual package installers like Brew, Aptitude, or Yum. There is an extremely powerful tool called ExifTool which is available for Windows, macOS, and Linux. % file someimage.jpg someimage.jpg: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1280, components 3 Linux and macOS systems have a very handy utility called, “ file” to view most common metadata fields. They may however only show a few select fields but there could be a lot more contained within the file. Most operating systems allow you to inspect the properties of a media file. How can I view the metadata of media files? If your business handles uploaded media files it would be worth clearing the metadata of the files on upload unless any fields are strictly necessary. All they would need to do then is access the system and execute the payload from the seamlessly innocent media file. Although it is not possible for image viewers or web servers to automatically run the sinister code, it is a way for a hacker or botnet to preload their payload on a system without it being detected. In more sinister scenarios harmful payloads can be included. You may for example share a photo on social media taken at your home but your camera includes personal information about you and your location within the metadata and this is the best case scenario. The metadata of media files can often reveal a lot during forensics investigations. You would actually be surprised how much metadata an image or video file can store. Steganography is the practice of concealing messages or information within other non-secret text or data.
