<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>《TrueCrypt可能是CIA的后门程序》的评论</title>
	<atom:link href="http://huaidan.org/archives/2751.html/feed" rel="self" type="application/rss+xml" />
	<link>http://huaidan.org/archives/2751.html</link>
	<description>关注网络安全</description>
	<lastBuildDate>Sun, 20 May 2012 00:27:04 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>作者：roy</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-19945</link>
		<dc:creator>roy</dc:creator>
		<pubDate>Thu, 22 Dec 2011 03:38:40 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-19945</guid>
		<description>这文章也太假了，谁说没有新的源代码，http://www.truecrypt.org/downloads2 就是它的最新源代码的下载地址</description>
		<content:encoded><![CDATA[<p>这文章也太假了，谁说没有新的源代码，http://www.truecrypt.org/downloads2 就是它的最新源代码的下载地址</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：硬盘加密方案确定 &#124; Xiaofei&#039;s Blog</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-18363</link>
		<dc:creator>硬盘加密方案确定 &#124; Xiaofei&#039;s Blog</dc:creator>
		<pubDate>Sun, 02 Jan 2011 18:21:25 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-18363</guid>
		<description>[...] TrueCrypt用的人比较多，但我直觉有一种抵触情绪，加之有人说此软件作者身份不明，源代码没有svn等的托管而直接是个压缩包，怀疑有中央情报局的后门（详见http://huaidan.org/archives/2751.html），果断弃之。 [...]</description>
		<content:encoded><![CDATA[<p>[...] TrueCrypt用的人比较多，但我直觉有一种抵触情绪，加之有人说此软件作者身份不明，源代码没有svn等的托管而直接是个压缩包，怀疑有中央情报局的后门（详见http://huaidan.org/archives/2751.html），果断弃之。 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：爽玩dropbox3：使用TrueCrypt建立加密文件 &#124; Changblog</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-17068</link>
		<dc:creator>爽玩dropbox3：使用TrueCrypt建立加密文件 &#124; Changblog</dc:creator>
		<pubDate>Tue, 30 Nov 2010 22:06:01 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-17068</guid>
		<description>[...] 要说一下的是，我看到两篇文章（一、二），上边说怀疑FBI或者CIA在这种开源加密程序的发行版里边注入了后门，因为从源代码编译出来的程序和发行包的有一定的不同。我个人认为，对于加密软件，不管是开源的，还是私有的，都必然要受到各个强力机构的重视，美帝是限制密码算法出口的，而tg则要给所有密码软件开发公司发许可证。所以，有这种怀疑很正常，但是大可不必惊慌，毕竟绝大部分人的加密文件都还不至于到如此吸引人的地步，并不是每个人都能做腊肠西的。因此，我建议那些对安全要求更高的用户，最好自行去TrueCrypt网站，下载最新的源代码，然后自己动手编译。这里是两份中文的编译教程（一、二）。 [...]</description>
		<content:encoded><![CDATA[<p>[...] 要说一下的是，我看到两篇文章（一、二），上边说怀疑FBI或者CIA在这种开源加密程序的发行版里边注入了后门，因为从源代码编译出来的程序和发行包的有一定的不同。我个人认为，对于加密软件，不管是开源的，还是私有的，都必然要受到各个强力机构的重视，美帝是限制密码算法出口的，而tg则要给所有密码软件开发公司发许可证。所以，有这种怀疑很正常，但是大可不必惊慌，毕竟绝大部分人的加密文件都还不至于到如此吸引人的地步，并不是每个人都能做腊肠西的。因此，我建议那些对安全要求更高的用户，最好自行去TrueCrypt网站，下载最新的源代码，然后自己动手编译。这里是两份中文的编译教程（一、二）。 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：类似TrueCrypt的工具FreeOTFE &#124; 铁卷防泄密</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-16456</link>
		<dc:creator>类似TrueCrypt的工具FreeOTFE &#124; 铁卷防泄密</dc:creator>
		<pubDate>Tue, 07 Sep 2010 15:31:37 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-16456</guid>
		<description>[...] 中文：TrueCrypt可能是CIA的后门程序 中文：最好用的truecrypt有CIA后门？ 英文：TrueCrypt是否CIA后门的分析 英文：FBI尝试了一年都无法破解TryeCrypt的加密 英文：TrueCrypt的wiki [...]</description>
		<content:encoded><![CDATA[<p>[...] 中文：TrueCrypt可能是CIA的后门程序 中文：最好用的truecrypt有CIA后门？ 英文：TrueCrypt是否CIA后门的分析 英文：FBI尝试了一年都无法破解TryeCrypt的加密 英文：TrueCrypt的wiki [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：最好用的truecrypt有CIA后门？ &#124; 威廉小宅</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-15999</link>
		<dc:creator>最好用的truecrypt有CIA后门？ &#124; 威廉小宅</dc:creator>
		<pubDate>Tue, 27 Jul 2010 11:58:10 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-15999</guid>
		<description>[...] http://huaidan.org/archives/2751.html No one knows who wrote TrueCrypt. No one knows who maintains TC. Moderators on the TC forum ban users who ask questions. TC claims to be based on Encryption for the Masses (E4M). They also claim to be open source, but do not maintain public CVS/SVN repositories and do not issue change logs. They ban folks from the forums who ask for change logs or old source code. They also silently change binaries (md5 hashes change) with no explanation&#8230; zero. The Trademark is held by a man in the Czech Republic ((REGISTRANT) Tesarik, David INDIVIDUAL CZECH REPUBLIC Taussigova 1170/5 Praha CZECH REPUBLIC 18200.) Domains are registered private by proxy. Some folks claim it has a backdoor. Who Knows? These guys say they can find TC volumes: http://16systems.com/TCHunt/index.html For these reasons, I won&#8217;t use it. Encryption is important and TC looks great and makes great claims, but TC should be more transparent.  Let me tell you a little story. In 1983, during his Turing Award lecture, Ken Thompson admitted to a back door in the UNIX kernel which enabled him to log in. Because UNIX was distributed as source, he was concerned about being discovered. So instead he wrote the C compiler to recognize that it was compiling the kernel, and to insert the relevant code into the binary during compilation. But because the C compiler was also distributes as source, he wrote the compiler so that it would recognize it was compiling a copy of itself, and then insert the relevant recognition code into the new C compiler. The result: a back door installed in an operating system distributed entirely as source code (without the back door). So I don&#8217;t think your claim is valid. http://cm.bell-labs.com/who/ken/trust.html [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://huaidan.org/archives/2751.html" rel="nofollow">http://huaidan.org/archives/2751.html</a> No one knows who wrote TrueCrypt. No one knows who maintains TC. Moderators on the TC forum ban users who ask questions. TC claims to be based on Encryption for the Masses (E4M). They also claim to be open source, but do not maintain public CVS/SVN repositories and do not issue change logs. They ban folks from the forums who ask for change logs or old source code. They also silently change binaries (md5 hashes change) with no explanation&#8230; zero. The Trademark is held by a man in the Czech Republic ((REGISTRANT) Tesarik, David INDIVIDUAL CZECH REPUBLIC Taussigova 1170/5 Praha CZECH REPUBLIC 18200.) Domains are registered private by proxy. Some folks claim it has a backdoor. Who Knows? These guys say they can find TC volumes: <a href="http://16systems.com/TCHunt/index.html" rel="nofollow">http://16systems.com/TCHunt/index.html</a> For these reasons, I won&#8217;t use it. Encryption is important and TC looks great and makes great claims, but TC should be more transparent.  Let me tell you a little story. In 1983, during his Turing Award lecture, Ken Thompson admitted to a back door in the UNIX kernel which enabled him to log in. Because UNIX was distributed as source, he was concerned about being discovered. So instead he wrote the C compiler to recognize that it was compiling the kernel, and to insert the relevant code into the binary during compilation. But because the C compiler was also distributes as source, he wrote the compiler so that it would recognize it was compiling a copy of itself, and then insert the relevant recognition code into the new C compiler. The result: a back door installed in an operating system distributed entirely as source code (without the back door). So I don&#8217;t think your claim is valid. <a href="http://cm.bell-labs.com/who/ken/trust.html" rel="nofollow">http://cm.bell-labs.com/who/ken/trust.html</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：自由民</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-15922</link>
		<dc:creator>自由民</dc:creator>
		<pubDate>Wed, 07 Jul 2010 05:36:03 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-15922</guid>
		<description>我用来加密日记，呵呵，CIA想要就拿去好了。</description>
		<content:encoded><![CDATA[<p>我用来加密日记，呵呵，CIA想要就拿去好了。</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：haha王</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-15801</link>
		<dc:creator>haha王</dc:creator>
		<pubDate>Sun, 27 Jun 2010 16:03:48 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-15801</guid>
		<description>首先，Truecrypt使用时没有任何流量记录，这是最关键的。如果留门却没有流量的话，等于没留。
其次，我们有伟大的GFW，美国小小的CIA能过来么= =</description>
		<content:encoded><![CDATA[<p>首先，Truecrypt使用时没有任何流量记录，这是最关键的。如果留门却没有流量的话，等于没留。<br />
其次，我们有伟大的GFW，美国小小的CIA能过来么= =</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：haha</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-15672</link>
		<dc:creator>haha</dc:creator>
		<pubDate>Wed, 16 Jun 2010 14:03:45 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-15672</guid>
		<description>TrueCrypt 如果有后门，比如破解的后门，就是说可以被这些人破解，这个很难确定。TrueCrypt没有网络木马后门，这个可以确定，我测试过。那么就算CIA能够破解，也不影响使用，呵呵，只要这里的人不能破解就行了，呵呵。</description>
		<content:encoded><![CDATA[<p>TrueCrypt 如果有后门，比如破解的后门，就是说可以被这些人破解，这个很难确定。TrueCrypt没有网络木马后门，这个可以确定，我测试过。那么就算CIA能够破解，也不影响使用，呵呵，只要这里的人不能破解就行了，呵呵。</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：。。</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-14804</link>
		<dc:creator>。。</dc:creator>
		<pubDate>Fri, 26 Feb 2010 17:34:17 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-14804</guid>
		<description>LZ你在造谣呢吧？TrueCrypt的源码都是同步更新的，不知LZ是何用意？？？？</description>
		<content:encoded><![CDATA[<p>LZ你在造谣呢吧？TrueCrypt的源码都是同步更新的，不知LZ是何用意？？？？</p>
]]></content:encoded>
	</item>
	<item>
		<title>作者：hh</title>
		<link>http://huaidan.org/archives/2751.html/comment-page-1#comment-14446</link>
		<dc:creator>hh</dc:creator>
		<pubDate>Thu, 31 Dec 2009 10:51:52 +0000</pubDate>
		<guid isPermaLink="false">http://huaidan.org/?p=2751#comment-14446</guid>
		<description>RAR秒破倒不知道
曾经用个工具在不到两个小时破解9位字母加数字密码</description>
		<content:encoded><![CDATA[<p>RAR秒破倒不知道<br />
曾经用个工具在不到两个小时破解9位字母加数字密码</p>
]]></content:encoded>
	</item>
</channel>
</rss>

