border border border
border
header image
border border
Main Menu
 Home
 Whats a Death Zone?
 What's a Raston?
 Projects
 The Voyager Project
 VERN - Vent Runner
 Defeating Photoradar
 K-9
 Hoarfrost Castle
 Bump Keys
 Gibraltar File Server
 Military-Grade Cryptofile
 Hacking the Wii
 VOX PC Interface
 IPTables Firewall
 Laserproofing the car
 Stabilizing the workstation
 Katana Restoration
 Feline Toilet Training
 In Search of Chai
 Absinthe
 Articles
 Comics Page
 Web Links
 Contact Me
 Secure Chat

 - - - - - - -

The Gibraltar Project

How would you like a cost affective, rock-solid file server that's resistent to Federal-level investigation?  You buy the hardware, I'll make one for you.



border
    arrow      Home arrow Projects arrow Military-Grade Cryptofile
Military-Grade Cryptofile
locked_record.jpg

Upgrade available as of 1/2/10 - I recommend you upgrade your cryptovolumes.  No vulnerabilities in the old version are known, but the new method is even tougher.

I've been reading articles about vulnerabilities in the implementation of cryptoloops, BestCrypt, TrueCrypt and most other cryptosystems currently available to the public and I was really annoyed - Phil Zimmerman wrote PGP to put crypto in the hands of the people.  Now that time has passed vulnerabilities in everything are discovered, but those vulnerabilities never really make it to the mainstream; you really have to keep your ear to the ground or else you'll find yourself using a cryptosystem that has more holes than a miniature golf course built on a brick of swiss cheese.  What truly offends me is that even in good crypto software, the default settings offer imperfect security!  The computer's doing all the work, why not make it tough as nails by default?

I'm especially dissappointed in BestCrypt and the BCWipe utility by Jetico (www.jetico.com) - when it was disclosed that the above vulnerabilities applied to their software, they essentially said 'Yep' and gave me the URL they wrote to address it (essentially saying 'Yep').  I also learned about the shred utility that comes with Linux and found that it did a far more thorough job.  Their software is a racket, carelessly developed and not worth paying for.

With all this I had to find out what the very best current option available is, and I believe it to be LUKS on Linux, with the strong key encrypted to a removable disk (USB key or the like).  This provides two-factor authentication (what you have and what you know - without both, the cryptofile won't open).  what follows is my research and what I did to make it work.

This is all geared toward Linux, because anybody who really cares about security beyond keeping an affair from their spouse does not use Windows or a Mac.

More articles than the default 10 - change the Display number below or select 'next' to get to the other articles and the script itself.

Display # 
 Date Item Title   Hits
30 Jun  What exactly I've done   787
14 Aug  Usage Examples   711
19 Jan  Real randomness comes first!   414
2 Jan  breakdown - genkey   362
2 Jan  breakdown - filesystem identification   417
2 Jan  breakdown - obfuscating keys in RAM   367
2 Jan  breakdown - make   361
2 Jan  breakdown - load / uload   355
2 Jan  breakdown - dieroller   325
2 Jan  breakdown - a discussion of the ciphers used   344
<< Start < Previous 1 2 Next > End >>
Results 1 - 10 of 15
 


Go to top Go to the top of this page Go to Top

border
Site Statistics
OS: Linux h
PHP: 5.2.6-2ubuntu4.6
MySQL: 5.0.67-0ubuntu6.1
Time: 17:37
Members: 3
Hits: 995354
News: 490
WebLinks: 28

 - - - - - - -

"And all of my words are second-hand and useless in face of this. Rationale, rhyme and reason pale beside a single kiss..." - The Sisters of Mercy, _Some Kind of Stranger_

powered by Mambo Content Management System
border
border border border