Live data from Hacker News

Microsoft terminated the account VeraCrypt used to sign Windows drivers

sourceforge.net

461–470 of 526 posts

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#461
post #37

Earlier quoted context omitted.

You can, but it's more than a warning. VeraCrypt has a signed kernel driver, which has higher requirements. You'll need to boot into a special Windows mode and disable Driver Signature Enforcement.

Afaict, you can't disable driver signature enforcement permanently without disabling secure boot.

Okay this is some bullshit.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#462
post #7

Earlier quoted context omitted.

And unfortunately some projects exclusively use sourceforge. Which breaks some of my CI pipelines.

Why would that break CI?

sourceforge serves files inconsistently.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#463
post #320

Earlier quoted context omitted.

I understand the sentiment, but.. do you realize how much more expensive that would make all these services? I don’t know the number. But personally I think using the services and ‘simply’ only use them if the disappearance isn’t catastrophic and have the price be low or free while it works isn’t too bad a trade-off. Admittedly that’s a big ‘if.’

These are usually multi billion dollar companies, they’ll be fine, stop worrying about them. Start worrying about the erosion of your rights as a consumer.

I agree in that case but be wary with these kind of assessments. There are tons of regulations that are meant for big players but can also affect much smaller negatively.

For instance I don't think to this day it is possible to operate a Mastodon server and be compliant with GPDR and the UK online safety Act. There was the famous case of LFGSS forum about to shut down due to the former, the forum was kind of saved by a group of individuals willing to take the risk but the founder stepped down from fear of legal risks.

There hasn't been home raided and servers and personal computers seized yet but that doesn't mean it can't happen and technically any EU or UK volunteer hosting some forums or open source based social media that isn't GPDR or online safety act compliant could be at risk. For most I believe it is not that they don't want to be compliant but they aren't aware of that and/or don't have the technical means without further development on the software they are using and despite them not abiding to their own user rights, most of their users would be more sad to see them shutdown than the current status of not obeying the law.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#464

Earlier quoted context omitted.

Amazing that their processes failed and didn't work, so the VP lashes out at everyone calling them out for it. It's not like Microslop isn't a huge organization that is the critical component here. Extremely unprofessional response, I'll reiterate, they see regular users as a nuisance.

I guess the real problem is, everybody's inbox is overwhelmed with useless junk. Expect someone read and follow instructions in email are not that realistic anymore

“Action Required” followed by the shittiest, least detailed, most ambiguous instructions on the planet is a Microslop staple. It’s exhilarating to get a couple of them in the same week.

The ones that tell you there’s a problem with your MS365 subscription, but don’t tell you which one are an especially exciting challenge to deal with. Bonus points if they warn about “possible data deletion” without specifying what.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#465
looks like the latest update was

> Mounir IDRASSI - 7 hours ago > Thank you all for your feedback and your support in getting media attention through various social platforms.

>After posting this, other developers in the security fields (like WireGuard) came forward to announce that they have the exact same issue. I understand why nobody talked publicly about this before and I'm glad that by going public I pushed others to do the same.

>Positive aspect is that a Microsoft VP (Scott Hanselman) has announced on X that he will help address this issue affecting me and others. He also reached out to me and connected me with other Microsoft people to help address this issue.

>I will let you know how things go.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#466
post #39

This is the same problem I'm currently facing with WireGuard. No warning at all, no notification. One day I sign in to publish an update, and yikes, account suspended. Currently undergoing some sort of 60 days appeals process, but who knows. That's kind of crazy: what if there were some critical RCE in WireGuard, being exploited in the wild, and I needed to update users immediately? (That's just hypothetical; don't f…

I wonder if npcap can route all traffic through a userland service, then handle it there.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#467

Earlier quoted context omitted.

>More regulation won't help here, because the regulation-maker is itself the hostile party. It's easy to paint the big gov as bad, but this is a case where unfortunately the populace seems to be in agreement with the big bad gov. While most US citizens support encryption, 76% or so, the vast majority 63% also favor government "backdoor" access for national security reasons. I guess either we believe in democracy or w…

Does the majority of the population even have a self-formed opinion on this or are they just parroting what the media tells them (which in many "democratic" countries is directly or indirectly controlled by the government, i.e. propaganda).

American People Shrug, Line Up For Fingerprinting

WASHINGTON, DC—Assuming that there must be a good reason for the order, U.S. citizens lined up at elementary schools and community centers across the nation Monday for government-mandated fingerprinting. “I’m not exactly sure what this is all about,” said Ft. Smith, AR, resident Meredith Lovell while waiting in line. “But given all the crazy stuff that’s going on these days, I’m sure the government has a very good reason.” Said Amos Hawkins, a Rockford, IL, delivery driver: “I guess this is another thing they have to do to ensure our freedom.”

(source: The Onion, October 9, 2002[1])

[1] https://theonion.com/american-people-shrug-line-up-for-finge...

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#468

Earlier quoted context omitted.

Automated systems breaking things without any human contact to get them resolved seems to be the theme of the last 10 years.

This phenomenon is so Orwellian with insufficient awareness, it should both be an SNL skit and a John Oliver episode. It's illiberal, neoliberal, corporate bullshit that causes harm to individuals. These companies need to be treated as utilities and the "companies can do whatever they want" arguments must be debunked and defeated because of the pervasive power they hold and immense harm they can cause to individuals…

And the worst thing is that we have the power to collectively make that behavior into a corporation-ending scandal but we choose not to because it doesn't affect most of us personally yet.

Re: Microsoft terminated the account VeraCrypt used to sign Windows drivers

#469

Earlier quoted context omitted.

"Never attribute to malice that which is adequately explained by stupidity"

I'm more convinced than ever that this aphorism has it completely backwards.

It's a decent rule for when one of your close friends breaks your favorite mug. Not so much for complete strangers, not to mention faceless mega-corporations, making choices to fuck you over.
Post reply on HN