BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] AeroFS
- Subject: [Discuss] AeroFS
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- Date: Mon, 21 Apr 2014 02:26:30 +0000
- In-reply-to: <li6oazw6naq.fsf@panix5.panix.com>
- References: <CAL8cYW1fEhj-reUNptW4+vfU5nywX-OB0=PCKUOQE_Vt1qCD=A@mail.gmail.com> <5352BED2.7020908@gmail.com> <5352E966.5020102@gmail.com> <5f076efda37e4520883033872ccf6dc9@CO2PR04MB684.namprd04.prod.outlook.com> <li6oazw6naq.fsf@panix5.panix.com>
> From: Mike Small [mailto:smallm at panix.com] > Sent: Sunday, April 20, 2014 11:20 AM > > How do you examine closed source crypto? Actually, here's a real good point: I did /not/ read the Truecrypt or Keepass source, in order to determine their strengths and weaknesses. I know from documentation and the interface, what standard crypto libraries they're using, what sources of random they are using, and how strong it all is. I know they're storing ciphertext on disk, and the weakpoint of Truecrypt is the password. I know the weakpoint in dropbox is the password. They are using AES 256 encryption at rest, which is strong, except for the fact that they know your password and therefore you have security *only* to the extent that all of their employees want you to, and haven't been hacked or coerced by the government, don't have any disgruntled former employees, etc. I'm a fan of this "never give your password to anyone" idea. As described in the "Good and Bad Crypto" thread.
- References:
- [Discuss] Ubuntu One file services
- From: genuineaudio at gmail.com (Stuart Conner)
- [Discuss] Ubuntu One file services
- From: richard.pieri at gmail.com (Richard Pieri)
- [Discuss] AeroFS
- From: tmetro+blu at gmail.com (Tom Metro)
- [Discuss] AeroFS
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- [Discuss] AeroFS
- From: smallm at panix.com (Mike Small)
- [Discuss] Ubuntu One file services
- Prev by Date: [Discuss] AeroFS
- Next by Date: [Discuss] Building a non-profit membership list?
- Previous by thread: [Discuss] AeroFS
- Next by thread: [Discuss] AeroFS
- Index(es):