3 ms·
If you're super paranoid you shouldn't trust any version of truecrypt. Read the fascinating story of Paul Le Roux... https://mastermind.atavist.com/ https://ma
by depingus 10y ago
If you're super paranoid you shouldn't trust any version of truecrypt. Read the fascinating story of Paul Le Roux...
https://mastermind.atavist.com/ https://mastermind.atavist.com/
He created E4M (which truecrypt was based on) and is rumored to have been one of the creators of truecrypt. Apparently he's also been a US government asset for a while.
- nickpsecurity 10y agoIf you're superparanoid, you should trust that because a superparanoid seemed to build it for himself and open-source it to stick it to the man in his mind. And then built a criminal empire that, if he was still financing it, depended on it for his survival. That's the kind of incentives that get results.
- dublinben 10y agoTrueCrypt has been subjected to an independent security audit. As have successors like VeraCrypt. Any alternatives likely haven't.
- ekianjo 10y agoSo what? Snowden even said that Truecrypt was one of the only tools that currently the NSA could not defeat. I'd rather trust him on that than your opinion on the matter.
- nickpsecurity 10y agoSame shit I said to Moxie about GPG. There's only a few things consistently stopping them. Best endorsement ever if you ask me. I still push for even greater levels of security and assurance but what stops NSA at the moment is one hell of a starting place.