Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Mysterious announcement from Truecrypt declares the project insecure and dead
boing boing ^ | 5-29-14 | Cory Doctorow

Posted on 05/29/2014 8:06:55 PM PDT by aMorePerfectUnion

The abrupt announcement that the widely used, anonymously authored disk-encryption tool Truecrypt is insecure and will no longer be maintained shocked the crypto world--after all, this was the tool Edward Snowden himself lectured on at a Cryptoparty in Hawai'i. Cory Doctorow tries to make sense of it all.

(Excerpt) Read more at boingboing.net ...


TOPICS: Computers/Internet; Conspiracy; Miscellaneous
KEYWORDS: bitlocker; cryptography; edwardsnowden; encryption; software; truecrypt
Navigation: use the links below to view more comments.
first previous 1-2021-4041-54 last
To: McGruff
I can't believe they used TrueCrypt.

Don't worry, I just need another 20 minutes.

41 posted on 05/30/2014 7:07:46 AM PDT by ProtectOurFreedom
[ Post Reply | Private Reply | To 37 | View Replies]

To: KevinB
Dammit, we used it to encrypt our hard drives. This sucks!

Check out DiskCryptor. I have been using to encrypt my data partition for quite a while and love it.


I find the popularity of whole disk encryption interesting.

Why do you do that ?
42 posted on 05/30/2014 7:29:51 AM PDT by PieterCasparzen (We have to fix things ourselves)
[ Post Reply | Private Reply | To 40 | View Replies]

To: Bobalu
My IT Manager predicted this a year or so ago. He has always felt that the TC developers were not astute enough to see where their creation was headed. That said we are not panicking and not removing TC from systems we manage. We are however looking for the next thing.
43 posted on 05/30/2014 7:40:18 AM PDT by mad_as_he$$
[ Post Reply | Private Reply | To 18 | View Replies]

To: PieterCasparzen
Why do you do that ?

If I lose or someone steals my laptop whoever has it will be unable to access any of my personal or client data. In my profession, I am ethically obligated to secure client data. I keep all of my data on a separate partition and encrypt that entire partition with DiskCryptor. I have set it up so the Diskcryptor password is required after any shutdown or reboot. It provides great peace of mind. Using a boot password rather than encryption provides some protection, but the disk can be pulled and used as a slave in another computer to gain access to the data. When encrypted the data is totally unavailable to prying eyes.

44 posted on 05/30/2014 8:03:14 AM PDT by KevinB ("If it weren't for double standards Democrats would have no standards at all" - Chris Plante)
[ Post Reply | Private Reply | To 42 | View Replies]

To: ShadowAce

Thanks for the ping.


45 posted on 05/30/2014 8:19:18 AM PDT by GOPJ (>The Mainstream Ministry of Information does not stand for liberty. Freeper Gene Eric)
[ Post Reply | Private Reply | To 33 | View Replies]

To: KevinB

Right, it’s not your data, it’s client data, and it’s on your laptop.

That makes complete sense, your laptop could get stolen, you want to throw up that security barrier for that situation.


46 posted on 05/30/2014 8:22:55 AM PDT by PieterCasparzen (We have to fix things ourselves)
[ Post Reply | Private Reply | To 44 | View Replies]

To: Bobalu
https://www.grc.com/misc/truecrypt/truecrypt.htm

Listening to Steve Gibson on the DTNS podcast for May 29 now.

47 posted on 05/30/2014 8:32:09 AM PDT by Stentor (Maybe the Goldman Sachs thing is just a coincidence. /S)
[ Post Reply | Private Reply | To 18 | View Replies]

To: PieterCasparzen
That makes complete sense, your laptop could get stolen, you want to throw up that security barrier for that situation.

Correct. It can also be used to protect data on flash cards and flash drives which can easily be lost or stolen.

48 posted on 05/30/2014 8:34:08 AM PDT by KevinB ("If it weren't for double standards Democrats would have no standards at all" - Chris Plante)
[ Post Reply | Private Reply | To 46 | View Replies]

To: KevinB

“Check out DiskCryptor. I have been using to encrypt my data partition for quite a while and love it.”

Thanks dude. :) We can’t not have an alternative...


49 posted on 05/30/2014 9:31:41 AM PDT by max americana (fired liberals in our company last election, and I laughed while they cried (true story))
[ Post Reply | Private Reply | To 40 | View Replies]

To: bigbob

Ok, ok, ok...I see Neo and the Agent, but where in the heck is the woman in the red dress?


50 posted on 05/30/2014 4:58:39 PM PDT by Delta Dawn (Fluent in two languages: English and cursive.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: rarestia
There is an alternate explanation that the NSA found a back door in the current software and told them to NOT patch it or they’ll be shut down.

Makes no sense that I can see. If that was the case why do anything at all? Just shut up about it. After all, Truecrypt is mature, how much more work on it was likely to be done anyway? They'd be better off to just quietly use the back door for now.

51 posted on 05/30/2014 5:05:55 PM PDT by expat1000
[ Post Reply | Private Reply | To 34 | View Replies]

To: killermosquito
When I went to England/Bulgaria a couple months ago I had put a movie in the laptop. Before I went on vacation I removed the movie. I put the movie back in the laptop and it boots up like normal.

I've seen this problem. The movie, 'The Double D's', has been known to cause issues with various laptop models. I recommend trying something more family oriented...
52 posted on 05/30/2014 5:05:57 PM PDT by Delta Dawn (Fluent in two languages: English and cursive.)
[ Post Reply | Private Reply | To 24 | View Replies]

To: expat1000

Because the first time another vulnerability is listed in their algorithm (happens more often than you think), they’d have to explain why they’re not releasing an update.


53 posted on 05/31/2014 4:29:09 AM PDT by rarestia (It's time to water the Tree of Liberty.)
[ Post Reply | Private Reply | To 51 | View Replies]

To: expat1000; rarestia

There’s also disinformation.

If there is something that is hard for NSA to decrypt, they’ll do what they can to get it to fall into disuse.

A public declaration that it’s got a backdoor is a great way to get many people to stop using it, problem solved.

It bears repeating that encryption of data on disk protects the data in case the machine is physically compromised, e.g., stolen, lost, etc.

Once again, malware is what is used to get at most people’s PCs/phones/etc.

Encrypting data stored on disk protects the data for when your OS is NOT running.

Like if your laptop is stolen, or the NSA comes barging into your house at 4am and confiscates your laptop because it has something on it that’s a national security issue. Maybe the FBI thinks you’re a child porn distributor and they come confiscate your laptop. Etc.

Encrypting disk data make a lot of sense for corporate IT departments for the computers that their employees carry around with them.

Encrypting disk data does nothing to keep a hacker from snooping on you while your OS is running and you can see your files in the clear.

If you can see files in the clear, so can a hacker.

Hackers are much more of a problem for the average American than law enforcement / national security confiscating their PC and going through their data. After all, if national security people see everything that comes out of and into your PC over the internet - they really don’t need to look at your hard drive !

Login passwords, account numbers, credit card info, etc., if none of that is stored on your laptop, then none of that can be stolen when your laptop is stolen. It don’t have to be encrypted if it just ain’t there.


54 posted on 05/31/2014 4:41:10 PM PDT by PieterCasparzen (We have to fix things ourselves)
[ Post Reply | Private Reply | To 51 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-54 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson