TrueCrypt suggesting migration to BitLocker?
91–100 of 414 posts
Re: TrueCrypt suggesting migration to BitLocker?
#92Re: TrueCrypt suggesting migration to BitLocker?
#93I missed the part where this document lists the vulnerabilities in TrueCrypt.
Re: TrueCrypt suggesting migration to BitLocker?
#94Well - this comes as a pretty big surprise. Is this real? Is there a known vulnerability that catalyzed this? Money from Microsoft? Threats? I'm not buying into conspiracy theories, but it does seem pretty out of place.
The binaries are properly GPG-signed with the same key as the previous binaries, check for yourself. [They] either compromised their private key too or the actual developer(s) did this. Be it voluntarily or by force of secret three-character agencies / a massive pay check.
Re: TrueCrypt suggesting migration to BitLocker?
#95Re: TrueCrypt suggesting migration to BitLocker?
#96Earlier quoted context omitted.
On the other hand, SourceForge lists the project as having been created in 2004: http://sourceforge.net/projects/truecrypt/
The SF account could have been compromised too.
Re: TrueCrypt suggesting migration to BitLocker?
#97In order of likelihood: * Defaced site, timed to screw up a big announcement * Rogue content maintainer * Phase II of audit turned up something rather bad (edit: NO - see tptacek below) edit: Variations on "developer forced to do this" (cf simmerian's comment): * Developer was big brother all along and they are shutting it down * Security vuln about to be disclosed, dev scrambles to inform (albeit poorly) * Legally o…
If the audit turned up something bad, the obvious step to take would be to publish it in all detail, fix the flaw, and then tell users to upgrade as soon as possible. Not go "OK SHOW'S OVER, USE PROPRIETY SOFTWARE FROM NOW ON".
It doesn't appear related to the audit
Re: TrueCrypt suggesting migration to BitLocker?
#98Re: TrueCrypt suggesting migration to BitLocker?
#99Well - this comes as a pretty big surprise. Is this real? Is there a known vulnerability that catalyzed this? Money from Microsoft? Threats? I'm not buying into conspiracy theories, but it does seem pretty out of place.
The binaries are properly GPG-signed with the same key as the previous binaries, check for yourself. [They] either compromised their private key too or the actual developer(s) did this. Be it voluntarily or by force of secret three-character agencies / a massive pay check.
Re: TrueCrypt suggesting migration to BitLocker?
#100Earlier quoted context omitted.
The binaries are properly GPG-signed with the same key as the previous binaries, check for yourself. [They] either compromised their private key too or the actual developer(s) did this. Be it voluntarily or by force of secret three-character agencies / a massive pay check.
A much simpler explanation is someone defaced the site around the same time a new release was coming out. Is there anything in the signed release package to corroborate what the site says?