TrueCrypt. Site & software compromised by NSA?
Holy crap!
http://www.theregister.co.uk/2014/05/28/truecrypt_hack/
This is (was) the world's most trusted and successful drive/file encryption software available. It is used by countless individuals and companies alike to protect the data on laptops in case of theft or to protect sensitive data from prying eyes. I use it myself and keep my personal documents, bank statements, software source code and sensitive customer data in encrypted TrueCrypt volumes. There is speculation that the NSA is behind the bizarre new version of the TC website and dodgy new "decrypt only" version available on the site. The FBI and NSA have long cursed TrueCrypt for blocking access to data on "suspects" computers so this explanation seems quite possible.
One suggestion is that the owner/developer of TrueCrypt has been ordered to hand over the private keys to the (compilation) of the software and received an NSA gagging order, rather like the Lavabit controversy, and has instead opted to post this bizarre version of the TrueCrypt website to effectively kill the project and frighten people off using it.
The site even suggests everyone switches to Microsoft's Bitlocker!
That is as ridiculous as the world's #1 successful safe manufacturer telling everyone they are ceasing trading and they should instead keep their valuables hidden in a cardboard box under the bed. The suggestion has an air of "logic" about it but is so contrary to the ultra-secure advice given within the TrueCrypt documentation as to shout "I'm saying this under duress to tip you off that I've been hit with a gagging order but can't tell you".
Everything is up in the air at the moment. There are more questions than answers. There is certainly foul play at work and accusing fingers pointing at the NSA. One thing seems certain, this is the end of the road for TrueCrypt. ![]()
_________________
I've left WP indefinitely.
We may NEVER know for sure, but I wouldn't be surprised is if the same that happened to Ladar (lavabit) happened here as well. If your product is TOO good and you don't cooperate, they effectively shut you down! I was with Ladar's service since it began as nerdshack prior to being renamed lavabit. I too am shocked by this. We will have to wait till more comes out if/when it does. It was too good of a product to just die without adequate explanation! ![]()
http://www.theregister.co.uk/2014/05/28/truecrypt_hack/
This is (was) the world's most trusted and successful drive/file encryption software available. It is used by countless individuals and companies alike to protect the data on laptops in case of theft or to protect sensitive data from prying eyes. I use it myself and keep my personal documents, bank statements, software source code and sensitive customer data in encrypted TrueCrypt volumes. There is speculation that the NSA is behind the bizarre new version of the TC website and dodgy new "decrypt only" version available on the site. The FBI and NSA have long cursed TrueCrypt for blocking access to data on "suspects" computers so this explanation seems quite possible.
One suggestion is that the owner/developer of TrueCrypt has been ordered to hand over the private keys to the (compilation) of the software and received an NSA gagging order, rather like the Lavabit controversy, and has instead opted to post this bizarre version of the TrueCrypt website to effectively kill the project and frighten people off using it.
The site even suggests everyone switches to Microsoft's Bitlocker!
Everything is up in the air at the moment. There are more questions than answers. There is certainly foul play at work and accusing fingers pointing at the NSA. One thing seems certain, this is the end of the road for TrueCrypt.
What do these words 'secure', 'security', 'private', 'privacy' mean?!?!?!?!?
I have scoured the latest Newspeak Dictionary and I find no mention of such a thing.
One shouldn't use terms that have not been authorized by the Ministry of Truth.
_________________
Since the birth of civilization, masters have controlled the masses.Our Masters rule over every nation and no one can defy them.They will attain Absolute Power as we reach the Singularity. Any who resist will be destroyed.I will not resist.
I have scoured the latest Newspeak Dictionary and I find no mention of such a thing.
One shouldn't use terms that have not been authorized by the Ministry of Truth.
Sorry, I haven't received my NSA authorised dictionary yet.
Joking aside, it is what the NSA would like, complete and unfettered access to everyones' files and they may have taken another step in that direction.
The "silliness" on the TrueCrypt website could be an attempt by the authors of TrueCrypt to show a "canary"
In other words the NSA has demanded the private keys for the software and insisted the developers of TrueCrypt install a back door in the software and also to remain quiet about this with a gagging order. Unable to tell the world what has happened without facing draconian consequences (like Lavabit) they've put up this dogdy website update to tell everyone not to trust their software any more but without breaking the terms of their NSA/ FBI gagging order.
It will be interesting to see how this story develops.
_________________
I've left WP indefinitely.
I've got the previous version(s) and I'm sticking with them for the time being. This seems to be the general consensus at the moment. The big no-no is to download the latest version on their site. Nobody knows for sure what is happening, so we'll have to wait and see what turns up... if anything. Some feedback was due this week regarding an independent verification of the source code of TrueCrypt 7.1a - it will be interesting to see what that says.
_________________
I've left WP indefinitely.
| Similar Topics | |
|---|---|
| My Account Has Been Compromised |
16 May 2011, 12:58 pm |
| Aspergers and a compromised central coherence of sight |
01 Oct 2010, 4:29 pm |
| Software patents and free software |
30 Jul 2010, 2:59 pm |
| Social site/Dating Site/ Friend Site. a new one? |
06 Mar 2012, 6:43 pm |

