Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Many (most?) TrueCrypt users obtained the software as a prebuilt Windows binary; they did not compile it from source. So even if the source code is clean, maybe the binaries were not. Is there any way to audit this and if so is that being done?


It has been done [1]. Rule #2 of the audit project will solve the problem for future builds [2].

[1] https://madiba.encs.concordia.ca/~x_decarn/truecrypt-binarie...

[2] http://istruecryptauditedyet.com/




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: