EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

10.18.13

Truecrypt Cannot be Audited Because It’s Proprietary Software

Posted in Free/Libre Software, Security at 8:37 am by Dr. Roy Schestowitz

Truecrypt

Summary: Why nobody should trust Truecrypt (or any other piece of proprietary software for that matter), even if it claims to have been “audited”

THE other day we alluded to Truecrypt in this post, not quite mentioning the holes in the argument that Truecrypt can be “audited” [1-3]. Unless everyone can view the code and compile it independently (or rely on others to do so independently), we must assume that Truecrypt is not secure and that it might contain back doors (either unidentified or deliberately planted). This whole Internet ‘debate’ about Truecrypt “audit” should remind us that Free software is vital for dodging surveillance.

The NSA has used corporations to facilitate snooping and it may not be alone [4]. This is happening at many levels [5-7] based on new leaks and revelations, so rather than look for evidence of insecurity (e.g. back door) we should pursue real assurance of security. You know what the spies like to tell us: if you have nothing to fear, you have nothing to hide, right? So come on, Truecrypt, share your source code. What have you got to hide?

Related/contextual items from the news:

  1. Should Truecrypt be audited?

    Truecrypt is a cross-platform, free disk encryption software for Windows and Unix-like operating systems. It is generally considered a good disk encryption software, and not too long ago, I wrote a tutorial that showed how to encrypt the Windows installation of a Windows-Linux dual-boot setup (see Dual-boot Fedora 18 and Windows 7, with full disk encryption configured on both OSs).

  2. New effort to fully audit TrueCrypt raises $16,000+ in a few short weeks
  3. Can you trust ‘NSA-proof’ TrueCrypt? Cough up some dough and find out

    The source code for the Windows, Linux and Mac OS X utility is publicly available for people to inspect and verify, but this has not been enough to convince every cryptography guru that it’s entirely secure.

  4. After Snowden’s leaks, China’s Huawei calls for more transparency in the tech industry

    With all of the recent revelations about the US National Security Agency’s surveillance programs, it must be hard for the Chinese telecom equipment manufacturer Huawei not to gloat a little bit.

    After all, the leaks from former contractor Edward Snowden showed that the NSA enlisted US technology companies to enable its snooping on global telecommunications networks—which is exactly what US intelligence officials have accused Huawei of doing on behalf of the Chinese government.

  5. Europe Moves to Shield Citizens’ Data

    Lawmakers here have introduced a measure in the European Parliament that could require American companies like Google and Yahoo to seek clearance from European officials before complying with United States warrants seeking private data.

  6. Dutch Telcos Used Customer Metadata, Retained To Fight Terrorism, For Everyday Marketing Purposes

    One of the ironies of European outrage over the global surveillance conducted by the NSA and GCHQ is that in the EU, communications metadata must be kept by law anyway, although not many people there realize it.

  7. NSA Harvesting Contact Lists

    A new Snowden document shows that the NSA is harvesting contact lists — e-mail address books, IM buddy lists, etc. — from Google, Yahoo, Microsoft, Facebook, and others.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

What Else is New


  1. The EPO No Longer Measures Quality of Patents; Instead It Publishes Fake Statistics

    The decline in patent quality at the EPO is a long-known issue and suppression of information about it merely enabled several more years of questionable patent grants, thereby putting at risk the perceived value of EPO services



  2. Speaking of “Social Democracy” While Suffering Extreme Democratic Deficiency

    The EPO represents an even broader assault on democracy in Europe (implicating ILO, Team UPC, national delegates, and national governments), but Benoît Battistelli is unique in the sense that he's disguising it or lying to himself about it



  3. Management by Intimidation Has Caused Deaths at the European Patent Office (EPO)

    An accurate diagnosis of the conditions created at the European Patent Office (EPO) by Benoît Battistelli and his cronies, who have essentially hijacked the Organisation -- not just the Office -- then attacked every 'enemy', either real or perceived



  4. The Difference Between Alain Pompidou and Benoît Battistelli as EPO President

    The different approaches adopted by Pompidou and Battistelli; one pursued amicable mediation and training, whereas the other resorted to vindicative witch-hunts, kangaroo courts, and a culture of terror which resulted in many suicides



  5. The Darker Past of the Next President of the EPO - Part IV: Links Between CGD (Former Employer of António Campinos) and the INPI

    More information about connections between CGD and the Portuguese Intellectual Property Office (INPI)



  6. Links 21/10/2017: Purism Against ME, Pop!_OS Ready

    Links for the day



  7. US Patents Appeal Board Attacked by the Patent 'Industry', Defended by Federal Courts, and Dodged by Patent Trolls

    PTAB, the branch or the 'court' responsible for eliminating bad patents, is coming under attacks from those who rely on poor patent quality and receives praises from everyone else, as usual



  8. In the United States, the Patent 'Industry' is a Dying Breed and China Adopts This Destructive Force

    The decaying patent microcosm, or the pipeline of low-quality patents and frivolous lawsuits these entail, loses its grip on the US; China, much to the astonishment of people who actually create things, is attempting to attract that ruinous microcosm (which preys on real, producing companies)



  9. Microsoft and Nokia's Patent Trolls by Proxy: First Conversant, Now Provenance Asset Group Holdings LLC

    Microsoft's shell game with patents (passing Android-hostile patents to trolls) carries on and publishers funded by these trolls offer the details, albeit vaguely and with obvious spin



  10. Anonymous Professionals Speak of Benoît Battistelli's Destruction of the EPO, But Why Does the Media Turn a Blind Eye?

    Everyone in the circles of EPO staff and EPO stakeholders knows that dysfunction has become the norm; European media, however, remains suspiciously silent about what otherwise would be a major European scandal (bigger than FIFA or Dieselgate)



  11. The Darker Past of the Next President of the EPO - Part III: More Details About Caixa Geral de Depósitos, Former Employer of Campinos

    The side of Campinos which he prefers to conceal, or rather his association with a rather notorious Portuguese bank



  12. UPC Looks Like More of a Distant Dream (or Nightmare) as Germany Adds Another Two Months' Delay

    The likelihood that the UPC will be altogether scuttled is growing as delays keep piling up and more complaints are being filed by public interest groups (as opposed to Team UPC, which hoped to shove the UPCA down everyone's throats behind closed doors)



  13. Patent Trolls Roundup: BlackBerry, Dominion Harbor, IPNav, IP Bridge

    A quick review of recent news regarding patent trolls or entities which resemble (and sometimes feed) these



  14. Battistelli's Destruction of the EPO is Bad for Everyone, Even Patent Attorneys

    The collapse of the European patent system, owing primarily to Battistelli's totalitarian style and deemphasis on patent quality, means that "the war is lost," as one professional puts it



  15. Links 19/10/2017: Mesa 17.2.3, New Ubuntu Release, Samsung Flirts With GNU/Linux Desktops

    Links for the day



  16. Some of the USPTO's Most Ridiculous Patents Are Scrutinised by “Above the Law” While Dennis Crouch Attempts to Tarnish Alice

    Controversies over patent scope and level of novelty required for a patent; as usual, public interest groups try to restrict patent scope, whereas those who make money out of abundance of patents attempt to remove every barrier



  17. Microsoft's Software Patents Aggression in Court (Corel Again)

    Microsoft's tendency to not only abuse the competition but also to destroy it with patent lawsuits as seen in Corel's case



  18. The Spanish Supreme Court Rejects the EPO's “Problem and Solution Approach” While Quality of European Patents Nosedives

    European Patents (EPs) aren't what they used to be and their credibility is being further eroded and even detected as such



  19. Europe is Being Robbed by Team Battistelli and the UPC/PPH Would Make Things Worse

    The European Patent Office (EPO) has put litigation at the forefront, having implicitly decided to no longer bother with proper patent examination and instead issue lots of patents for judges and lawyers to argue about (at great expense to the public)



  20. Team UPC Continues to Promote Illusion of UPC Progress Where There's None

    The core members of Team UPC in the UK spread obvious falsehoods in the media, probably in an effort to attract 'business' (consultation regarding something that does not exist)



  21. António Campinos: A True EPO Reformer or More of the Same?

    More unfortunate reminders that Campinos and Battistelli don't quite diverge on the big issues, they're just more than two decades apart in age (but the same nationality)



  22. Juve Has Confirmed That António Campinos is French

    The relationship between Campinos and Battistelli has a nationality aspect to it, not even taking into account the interpersonal connection which goes a long way back



  23. The Darker Past of the Next President of the EPO - Part II: António Campinos at Banco Caixa Geral de Depósitos

    A look at the largely-hidden banking career of the next President of the EPO and the career of the person who competed with him for this position



  24. SUEPO to the Media, Regarding Campinos: “No Comment, It’s Too Dangerous”

    António Campinos, who is Benoît Battistelli's chosen successor at the EPO, as covered by German media earlier this month



  25. Staff Union of the EPO (SUEPO) Willing to Work With Campinos But Foresees Difficulties

    New message from SUEPO regarding Battistelli's successor of choice (Campinos)



  26. Links 18/10/2017: GTK+ 3.92, Microsoft Bug Doors Leaked

    Links for the day



  27. The Darker Past of the Next President of the EPO - Part I: Introduction

    Some new details about Mr. Campinos, who is Battistelli’s successor at the EPO



  28. Confessions of EPO Insiders Reveal That European Patents (EPs) Have Lost Their Legitimacy/Value Due to Battistelli's Policies

    A much-discussed topic at the EPO is now the ever-declining quality of granted patents, which make or break patent offices because quality justifies high costs (searches, applications, renewals and so on)



  29. Patent Firms From the United States Try Hard to Push the Unitary Patent (UPC), Which Would Foment Litigation Wars in Europe

    The UPC push seems to be coming from firms which not only fail to represent public interests but are not even European



  30. In the Age of Alice and PTAB There is No Reason to Pursue Software Patents in the United States (Not Anymore)

    The appeal board in the US (PTAB) combined with a key decision of the Supreme Court may mean that even at a very low cost software patents can be invalidated upon demand (petition) and, failing that, the courts will invalidate these


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts