Bitcoin Forum
April 27, 2024, 09:22:08 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: WARNING: TrueCrypt is no longer secure!  (Read 1203 times)
drrussellshane (OP)
Hero Member
*****
Offline Offline

Activity: 546
Merit: 500


View Profile
May 29, 2014, 03:46:14 PM
 #1

Quote
WARNING: Using TrueCrypt is not secure as it may contain unfixed security issues

This page exists only to help migrate existing data encrypted by TrueCrypt.

The development of TrueCrypt was ended in 5/2014 after Microsoft terminated support of Windows XP. Windows 8/7/Vista and later offer integrated support for encrypted disks and virtual disk images. Such integrated support is also available on other platforms (click here for more information). You should migrate any data encrypted by TrueCrypt to encrypted disks or virtual disk images supported on your platform.

http://truecrypt.sourceforge.net/

http://www.reddit.com/r/netsec/comments/26pz9b/truecrypt_development_has_ended_052814/

Buy a TREZOR! Premier BTC hardware wallet. If you're reading this, you should probably buy one if you don't already have one. You'll thank me later.
1714209728
Hero Member
*
Offline Offline

Posts: 1714209728

View Profile Personal Message (Offline)

Ignore
1714209728
Reply with quote  #2

1714209728
Report to moderator
1714209728
Hero Member
*
Offline Offline

Posts: 1714209728

View Profile Personal Message (Offline)

Ignore
1714209728
Reply with quote  #2

1714209728
Report to moderator
1714209728
Hero Member
*
Offline Offline

Posts: 1714209728

View Profile Personal Message (Offline)

Ignore
1714209728
Reply with quote  #2

1714209728
Report to moderator
BitcoinCleanup.com: Learn why Bitcoin isn't bad for the environment
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714209728
Hero Member
*
Offline Offline

Posts: 1714209728

View Profile Personal Message (Offline)

Ignore
1714209728
Reply with quote  #2

1714209728
Report to moderator
DeathAndTaxes
Donator
Legendary
*
Offline Offline

Activity: 1218
Merit: 1079


Gerald Davis


View Profile
May 29, 2014, 03:50:15 PM
 #2

Strange that development just ended due to "support for XP ending".  The explanation ignores the fact that people would want to use TrueCrypt on Linux, OSX, and later versions of Windows.  I wonder if a three letter agency coerced the development team into integrating backdoors and rather than do that they just ended development?
sumana
Member
**
Offline Offline

Activity: 73
Merit: 10


View Profile
May 29, 2014, 03:50:29 PM
 #3

any stats how many users are affected by this

signed
drrussellshane (OP)
Hero Member
*****
Offline Offline

Activity: 546
Merit: 500


View Profile
May 29, 2014, 03:51:24 PM
 #4

Strange that development just ended due to support for XP ending.  The explanation is dubious as it ignores the fact that people would want to use TrueCrypt on Linux, OSX, and later versions of Windows.  I wonder if a three letter agency coerced the development team into integrating backdoors and rather than do that they just ended development?

This seems like an NSA letter to me.... not unlike what happened with Lavabit.

Buy a TREZOR! Premier BTC hardware wallet. If you're reading this, you should probably buy one if you don't already have one. You'll thank me later.
yonce
Full Member
***
Offline Offline

Activity: 182
Merit: 100


View Profile
May 29, 2014, 03:56:51 PM
 #5

I did not hear about this. I guess it's time to re-encrypt the flash drives for cold storage.

STAY AWAY: rockwell,btc-arbs,bitcoin-trader - I've been playing HYIP's and have a near flawless record over the last year. Made over 1000% return last year. Play HYIP's safely and smart! Stay away from the referral whores on this forum, especially from those putting out their referral links in their signatures. They have no other interest but to profit from you.
Joe_Bauers
Hero Member
*****
Offline Offline

Activity: 802
Merit: 1003


GCVMMWH


View Profile
May 29, 2014, 04:43:39 PM
 #6

Maybe something came up in the latest audit?
spazzdla
Legendary
*
Offline Offline

Activity: 1722
Merit: 1000


View Profile
May 29, 2014, 05:00:29 PM
 #7

Strange that development just ended due to "support for XP ending".  The explanation ignores the fact that people would want to use TrueCrypt on Linux, OSX, and later versions of Windows.  I wonder if a three letter agency coerced the development team into integrating backdoors and rather than do that they just ended development?

This sounds very accurate.

Allow us access to your customers encrypted files.

NO

If you don't jail for life,

oh ya, TrueCrypt  SHUTDOWN, suck my D NSA.

We need mass public hangings of many public officals, such betrayal of the public should only be met one way.
spazzdla
Legendary
*
Offline Offline

Activity: 1722
Merit: 1000


View Profile
May 29, 2014, 05:01:08 PM
 #8

any stats how many users are affected by this

NSA probably has a death order on them, if they say they die..  I'm not joking.
Its About Sharing
Legendary
*
Offline Offline

Activity: 1442
Merit: 1000


Antifragile


View Profile
May 29, 2014, 05:33:42 PM
 #9

So, an industry standard (so to speak) encryption program, is suddenly no longer secure and that is all?
Is there a canary here? Looks like it...

BTC = Black Swan.
BTC = Antifragile - "Some things benefit from shocks; they thrive and grow when exposed to volatility, randomness, disorder, and stressors and love adventure, risk, and uncertainty. Robust is not the opposite of fragile.
CincyFan
Newbie
*
Offline Offline

Activity: 15
Merit: 0


View Profile
May 29, 2014, 05:37:28 PM
 #10

So, an industry standard (so to speak) encryption program, is suddenly no longer secure and that is all?
Is there a canary here? Looks like it...

Has to be.  It makes no sense otherwise.  If not, it seems they were forced to shut down by certain US agencies.
Its About Sharing
Legendary
*
Offline Offline

Activity: 1442
Merit: 1000


Antifragile


View Profile
May 29, 2014, 05:51:34 PM
 #11

So, an industry standard (so to speak) encryption program, is suddenly no longer secure and that is all?
Is there a canary here? Looks like it...

Has to be.  It makes no sense otherwise.  If not, it seems they were forced to shut down by certain US agencies.

It looks like NSA is getting to the point where more and more people just flat out don't respect them and are willing to do whatever because their heart says so.

Further, they appear to be in a bit of a self inflicted Chinese finger trap, and easing up just lets us a bit more free. Lose lose for them and for us win win.  Grin

BTC = Black Swan.
BTC = Antifragile - "Some things benefit from shocks; they thrive and grow when exposed to volatility, randomness, disorder, and stressors and love adventure, risk, and uncertainty. Robust is not the opposite of fragile.
Fiyasko
Legendary
*
Offline Offline

Activity: 1428
Merit: 1001


Okey Dokey Lokey


View Profile
May 29, 2014, 05:57:49 PM
 #12

Seriously, how did truecrypt suddenly become unsecure? I don't want to hear
"Oh well, uhh, old exploits weren't fixed so that means it's vulnerable and were not gonna fix it because NSA told us to drop the program"
What the hell is making truecrypt unsecure? I'm damn confident that it'd be harder for the NSA to open a truecrypt drive than a Bitlocker drive...

http://bitcoin-otc.com/viewratingdetail.php?nick=DingoRabiit&sign=ANY&type=RECV <-My Ratings
https://bitcointalk.org/index.php?topic=857670.0 GAWminers and associated things are not to be trusted, Especially the "mineral" exchange
PrivacyIsImportant
Jr. Member
*
Offline Offline

Activity: 50
Merit: 24


View Profile
May 29, 2014, 06:05:32 PM
Last edit: December 07, 2023, 03:11:08 AM by PrivacyIsImportant
 #13

WARNING!!!

This topic title is full of bullshit... Don't believe to all who says that ! This is just another stupid story to convince you to use NSA tools (BitLocker,RSA tools and others)
Here are original TrueCrypt 7.1a mirror:

http://cyberside.net.ee/truecrypt/


Don't get tricked and never forget to verify the checksums!
CincyFan
Newbie
*
Offline Offline

Activity: 15
Merit: 0


View Profile
May 29, 2014, 06:27:14 PM
 #14

WARNING!!!

This topic title is full of bullshit... Don't believe to all who says that ! This is just another stupid story to convince you to use NSA tools (BitLocker,RSA tools and others)
Here are original TrueCrypt 7.1a mirrors:

http://s7ick.org/tools/truecrypt/
http://cyberside.net.ee/truecrypt/


Don't get tricked and never forget to verify the checksums!

While I tend to agree with your assessment, do you have evidence of your claim?
Fiyasko
Legendary
*
Offline Offline

Activity: 1428
Merit: 1001


Okey Dokey Lokey


View Profile
May 29, 2014, 06:38:38 PM
 #15

WARNING!!!

This topic title is full of bullshit... Don't believe to all who says that ! This is just another stupid story to convince you to use NSA tools (BitLocker,RSA tools and others)
Here are original TrueCrypt 7.1a mirrors:

http://s7ick.org/tools/truecrypt/
http://cyberside.net.ee/truecrypt/


Don't get tricked and never forget to verify the checksums!

While I tend to agree with your assessment, do you have evidence of your claim?
Please search TrueCrypt on reddit, you will see a roughly 95% rate of people saying "Truecrypt is secure, more recent versions are not"

http://bitcoin-otc.com/viewratingdetail.php?nick=DingoRabiit&sign=ANY&type=RECV <-My Ratings
https://bitcointalk.org/index.php?topic=857670.0 GAWminers and associated things are not to be trusted, Especially the "mineral" exchange
bitbouillion
Sr. Member
****
Offline Offline

Activity: 868
Merit: 250



View Profile
May 29, 2014, 06:39:14 PM
 #16

What is next? bitcoin-qt not secure, pls. cash out your BTC and use .... ?

PrivacyIsImportant
Jr. Member
*
Offline Offline

Activity: 50
Merit: 24


View Profile
May 29, 2014, 06:40:27 PM
 #17

CincyFan,
1) There are completely no evidence of the previous claim as well ("TC isn't secure anymore")
    - Because there are no official statement from a TrueCrypt author regarding this issue, signed by him personally.
    - TrueCrypt authors would never recommend using commercial software, while there are a lot of good alternatives like BestCrypt or similar.
    - There was a statement on a TC site regarding that using any commercial software is not secure, and now they suddenly have changed their mind?? WTF!!

2) There were no success in auditing a TrueCrypt sources.
On the TC Wikipedia it was said that future release will contain a full windows 8 support:
Quote
Planned features

According to the TrueCrypt website[81] the following features were planned for future releases:

    Full support for Windows 8
    Ability to encrypt Windows system partitions/drives on UEFI-based computers
    Command line options for volume creation (already implemented in Linux and Mac OS X versions)
    "Raw" CD/DVD volumes
Authors wouldn't just change their mind in that kiddy way and tell everyone to use BitLocker by Microsoft.
CincyFan
Newbie
*
Offline Offline

Activity: 15
Merit: 0


View Profile
May 29, 2014, 07:21:54 PM
 #18

WARNING!!!

This topic title is full of bullshit... Don't believe to all who says that ! This is just another stupid story to convince you to use NSA tools (BitLocker,RSA tools and others)
Here are original TrueCrypt 7.1a mirrors:

http://s7ick.org/tools/truecrypt/
http://cyberside.net.ee/truecrypt/


Don't get tricked and never forget to verify the checksums!

While I tend to agree with your assessment, do you have evidence of your claim?
Please search TrueCrypt on reddit, you will see a roughly 95% rate of people saying "Truecrypt is secure, more recent versions are not"

I have searched on reddit.  It's all very interesting to read, but there is a TON to sift through.  Maybe you can save us all a little time if you know specifically which versions are secure?
PrivacyIsImportant
Jr. Member
*
Offline Offline

Activity: 50
Merit: 24


View Profile
May 29, 2014, 07:33:23 PM
 #19

7.1a is secure enough, it was been up for almost 3 years until this shutdown and there are 3 officially failed code audits during this period of time.
There are a lot of the US court cases where they still weren't able to go further due to lack of evidence because of the TrueCrypt encryption.
CincyFan
Newbie
*
Offline Offline

Activity: 15
Merit: 0


View Profile
May 29, 2014, 07:48:24 PM
 #20

7.1a is secure enough, it was been up for almost 3 years until this shutdown and there are 3 officially failed code audits during this period of time.
There are a lot of the US court cases where they still weren't able to go further due to lack of evidence because of the TrueCrypt encryption.

Thanks.  I found this article via reddit: https://madiba.encs.concordia.ca/~x_decarn/truecrypt-binaries-analysis/ which seems to say the same thing you are.  It's a bit technical for my level though.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!