Encryption



yep.. we still use this in the company.

Was kinda worried.. but yeah..

For home / private use I am looking at something that should last.. Truecrypt has been unsupported for a while and it is no good if it dies 2 win versions down the road.

Looking at GnuPG at the moment

::emp::
 
yep.. we still use this in the company.

Was kinda worried.. but yeah..

For home / private use I am looking at something that should last.. Truecrypt has been unsupported for a while and it is no good if it dies 2 win versions down the road.

Looking at GnuPG at the moment

::emp::

Still using Truecrypt here as well.
 
With the understanding that the NSA prob has full access (if they want it), I use it to keep everyone else out


Edit; truecrypt
 
Truecrypt has released an update saying that it is insecure and development has been terminated. The style of the announcement is very odd; however we believe it is likely to be legitimate and not a simple defacement. The new executable contains the same message and is cryptographically signed. We believe that there is either a power conflict in the dev team or psychological issues, coersion of some form, or a hacker with access to site and keys.

Theory #1 - TrueCrypt has been comprised by the FBI or NSA or served with some type of NSL letter. It is now backdoored and the developers want everyone to stop using it.

Theory #2 - TrueCrypt team found a vulnerability in its own code or perhaps even the death of a core developer and decided to shut down.

More likely #1 is what happened.

Are you encrypting data you wouldnt care if the .gov raided your HDD's and cracked them? Awesome! Use TrueCrypt 100%.

Is your data questionable? Try BitLocker for Windows. (Still not 100% secure or safe).
 
Think I've said this before, will say it again.

I have friends in law enforcement. I know for a fact that both the FBI and local law enforcement can not crack truecrypt. I don't know about the NSA, but who really knows what they fuck those guys are up to?

Anyway, truecrypt probably got a "knock and talk" from some alphabet soup guys, they refused to cooperate and shut it down. Truecrypt will still be good for the next year or 3, unless there's an unknown major exploit or huge advance in technology that renders it vulnerable. You're safe to keep using it for the time being, but would be wise to keep an eye out for alternatives.
 
And for your more sensitive data, you should be air gaping it anyway. No internet is ever connected to that machine. If there's a wireless card pull it. And for the truly paranoid, if you don't want to turn your office into a feriday cage, throw a couple of your moms vibrators on the windowsill so the CPU vibrations can't be intercepted by the surveillance truck parked outside.

Edit; and use an old machine with no cd or USB ports. That will leave the forensics team temporarily fucked when they raid your house. And pull the power cord so the memory can't be read.
 
And for your more sensitive data, you should be air gaping it anyway. No internet is ever connected to that machine. If there's a wireless card pull it. And for the truly paranoid, if you don't want to turn your office into a feriday cage, throw a couple of your moms vibrators on the windowsill so the CPU vibrations can't be intercepted by the surveillance truck parked outside.

Edit; and use an old machine with no cd or USB ports. That will leave the forensics team temporarily fucked when they raid your house. And pull the power cord so the memory can't be read.

Yeah you can do all that but if you leave a potato chip bag laying around you're still fucked!

[ame="http://www.youtube.com/watch?v=FKXOucXB4a8"]The Visual Microphone: Passive Recovery of Sound from Video - YouTube[/ame]
 
https://veracrypt.codeplex.com/

Like Truecrypt, it is an encryption tool, for systems and partitions, Truecrypt uses PBKDF2-RIPEMD160 with 1000 iterations whereas in VeraCrypt they use a whopping 327670, And for standard containers and other partitions, TrueCrypt uses at most 2000 iterations but VeraCrypt uses 655340 for RIPEMD160 and 500000 iterations for SHA-2 and Whirlpool.
This is a huge improvement to the Truecrypt tool, and can give you the reassurance that no one will be able to crack your encryption and see all of your justin bieber pictures you have saved on your HDD