From the TrueCrypt website:

__________________

WARNING: Using TrueCrypt is not secure as it may contain unfixed security issues

This page exists only to help migrate existing data encrypted by TrueCrypt.

The development of TrueCrypt was ended in 5/2014 after Microsoft terminated support of Windows XP. Windows 8/7/Vista and later offer integrated support for encrypted disks and virtual disk images. Such integrated support is also available on other platforms (click here for more information). You should migrate any data encrypted by TrueCrypt to encrypted disks or virtual disk images supported on your platform.
___________________

This is very suspicious. Not only have they changed their website to promote a proprietary encryption program, but they've also released a new version of TrueCrypt, with commits that are uncomfortably odd. I think it's unlikely that it's some rogue cracker, as they would need the GPG keys for the compilation of the new 7.2 version.

My money is on this being a warrant-canary. Someone or some group is forcing TrueCrypt to install a backdoor, and this is the developers' way of warning everyone. We could be observing another Lavabit 2.0 in slow motion. And it is yet another reason to only use FSF-certified free software licenses.

Some interesting discussion here:

http://www.reddit.com/r/netsec/comments/26pz9b/truecrypt_development_has_ended_052814/

http://www.reddit.com/r/linux/comments/26qe9f/truecrypt_is_not_secure_official_sourceforge_page/

Reply via email to