<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>TheAppleBlog &#187; TrueCrypt</title>
	<atom:link href="http://theappleblog.com/tag/truecrypt/feed/" rel="self" type="application/rss+xml" />
	<link>http://theappleblog.com</link>
	<description>TheAppleBlog, published by and for the day-to-day Apple user, is a prominent source for news, reviews, walkthroughs, and real life application of all Apple products.</description>
	<lastBuildDate>Sat, 21 Nov 2009 17:00:44 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='theappleblog.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://www.gravatar.com/blavatar/dd1835437bf6abb6c967c7d6646908a5?s=96&#038;d=http://s.wordpress.com/i/buttonw-com.png</url>
		<title>TheAppleBlog &#187; TrueCrypt</title>
		<link>http://theappleblog.com</link>
	</image>
			<item>
		<title>TrueCrypt 5.0 Brings Plausible Deniability To OS X Users</title>
		<link>http://theappleblog.com/2008/02/06/truecrypt-50-brings-plausible-deniability-to-os-x-users/</link>
		<comments>http://theappleblog.com/2008/02/06/truecrypt-50-brings-plausible-deniability-to-os-x-users/#comments</comments>
		<pubDate>Wed, 06 Feb 2008 19:23:56 +0000</pubDate>
		<dc:creator>Bob Rudis</dc:creator>
		<category><![CDATA[Commentary]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[encryption]]></category> <category><![CDATA[security]]></category> <category><![CDATA[TrueCrypt]]></category>
		<guid isPermaLink="false">http://theappleblog.com/2008/02/06/truecrypt-50-brings-plausible-deniability-to-os-x-users/</guid>
		<description><![CDATA[While I&#8217;m not trying to only focus on security topics, they just seem to pop up more often than not, including today&#8217;s serendipitous discovery that TrueCrypt is available for OS X. Security isn&#8217;t just about maintaining system integrity (loosely defined as keeping malicious code from getting onto/running on your system). A critical component is ensuring [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=theappleblog.com&blog=5550580&post=2900&subd=gigapple&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img src='http://gigapple.files.wordpress.com/2008/02/truecrypt.png' alt='TrueCrypt' align='left' style="margin-right:10px"/>While I&#8217;m not <i>trying</i> to only focus on security topics, they just seem to pop up more often than not, including today&#8217;s serendipitous discovery that <a href="http://www.truecrypt.org/">TrueCrypt</a> is available for OS X. Security isn&#8217;t just about maintaining system integrity (loosely defined as keeping malicious code from getting onto/running on your system). A critical component is ensuring that your valuable data is protected according to your risk appetite (loosely defined as confidentiality). Macs already have <a href="http://www.macdevcenter.com/pub/a/mac/2003/12/19/filevault.html">FileVault</a> and <a href="http://techtips.chanduonline.com/2006/08/19/mac-os-x-how-to-secure-an-external-hard-drive/">secure disk images</a> to handle basic encryption needs, so you may be asking why we need yet another utility for protecting information our systems (a fair question).</p>
<p>If you need/desire cross-platform compatibility, then TrueCrypt is a perfect choice. You can encrypt a virtual disk image onto a USB drive and take it from Windows to Linux to OS X and gain access to your all your secret data, something that is not possible with OS X secure disk images.</p>
<p>The other big &#8220;selling point&#8221; (difficult to use that term with a free &#038; open source product) is the concept of plausible deniability. Until you go through the process of decrypting/mounting a volume, TrueCrypt file or disk volumes appear to consist of nothing more than random data (i.e. there is no &#8220;signature&#8221;). It is impossible to prove that a file, a partition or a device is a TrueCrypt volume or that it has been encrypted. This is an important point since we&#8217;re going down a very slippery slope (at least in the United States) where folks are now being <a href="http://www.schneier.com/blog/archives/2007/11/animal_rights_a.html">forced to give up their secrets</a> with full legal backing. You can rename a TrueCrypt file to &#8220;Family Vacation.mov&#8221; and be able to claim that it&#8217;s just a corrupted transfer from your video camera with no way for the authorities to prove otherwise. Similarly, non-boot volumes (which is not an option for OS X yet) have no identifiable tags, making it look like an unformatted partition with random data.</p>
<p>Sadly, one of the coolest features – creating a hidden volume <i>within</i> an encrypted volume – is also not available on OS X yet. This option would allow you to give up your keys/passphrase to an outer-encrypted volume, but have another hidden, encrypted volume within it that uses a separate set of keys/passphrase. This lets you give up <i>some</i> of your secrets but not all of them.</p>
<p>My attempts at <a href="http://www.truecrypt.org/downloads.php">downloading</a> and installing TrueCrypt were woefully unsuccessful with Safari under Leopard (the download file was corrupted). It worked fine in Firefox and is available for 10.4 and 10.5, Intel or PPC. I&#8217;ll be putting the software through  some tests over the next few days, so drop a note in the comments or forums if you have any questions or want to share your experiences with the product.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/gigapple.wordpress.com/2900/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/gigapple.wordpress.com/2900/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/gigapple.wordpress.com/2900/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/gigapple.wordpress.com/2900/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/gigapple.wordpress.com/2900/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/gigapple.wordpress.com/2900/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/gigapple.wordpress.com/2900/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/gigapple.wordpress.com/2900/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/gigapple.wordpress.com/2900/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/gigapple.wordpress.com/2900/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/gigapple.wordpress.com/2900/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/gigapple.wordpress.com/2900/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=theappleblog.com&blog=5550580&post=2900&subd=gigapple&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://theappleblog.com/2008/02/06/truecrypt-50-brings-plausible-deniability-to-os-x-users/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a08d08f6b541441fccf36bc6392a0784?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">hrbrmstr</media:title>
		</media:content>

		<media:content url="http://gigapple.files.wordpress.com/2008/02/truecrypt.png" medium="image">
			<media:title type="html">TrueCrypt</media:title>
		</media:content>
	</item>
	</channel>
</rss>