Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.computer.security
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #31 (permalink)  
Old 09-17-2006, 10:45 AM
nemo_outis
Guest
 
Posts: n/a
Default Re: A Truecrypt Trick

TwistyCreek <anon@comments.header> wrote in
news:LAJQLL7D38977.2445949074@twistycreek.com:

> "nemo_outis" <abc@xyz.com> wrote in news:Xns983D52A68669Dabcxyzcom@
> 127.0.0.1:
>
>> anonymous <anon@comments.header> wrote in
>> news:XOUCGODB38973.2769791667@twistycreek.com:

>
>>> Dr. EvenMorePedantic is compelled to point out that the gentleman's
>>> name in question is Kerchoffs, so in fact it is "Kerckhoffs'
>>> principle".

>>
>>
>> Reduced to looking for misplaced apostrophes? Your life really must
>> be very empty.

>
> Nemo, I was making a (very) modest joke here, no attack intended. I
> thought a smile or two would be useful in this group in between poor
> traveler66 being given the 'Mr. Bill' treatment everyday and the 'bait
> the psycho' stuff going on with the "FBI sadists' guy.
> Actually I found your your citation interesting and informative.



Sorry, I over-reacted :-)

You see, there are a number of folks here whom I have thoroughly spanked
in the past. They (directly or using a number of sockpuppets) now spend
their lives hoping I will make a misstep or misstatement so that they can
pounce on it. I must then spend the next half-dozen posts playing whack-
a-mole to suppress these morons for a bit while they lick their wounds.
I mistook your reply for one from them.



> BTW I am slightly disappointed in you as you failed to point out my
> misspelling of 'Kerckhoffs' name in my first use of it.


Actually, I let that slide. My prime worry was that the cryptographic
Kerchoffs' principle would be confused with the unrelated electrical
Kirchoff's principle/law.


> PS-If one uses VMWare to run Win98 (or 2000) inside a Truecrypt
> partition in Xp, (in essence a poor man's full disk encryption) are
> you aware of any leaks into the host OS that would suggest this method
> inferior to an actual FDE of XP?


I think it's a good method for a number of reasons, not least that it is
difficult for any acquired viruses to break out of such a sandbox.
(Unless, of course, you network your vmware virtual machine to your real
machines.)

And leakage to the main OS should be very small (I don't know if it's
zero).

There are two remaining points which (depending on your circumstances)
may be vulnerabilities:

1. The fact that you are using vmware (not the activities within vmware)
will be recorded in the containing OS (in the registry, existence of dlls
& services, etc.)

2. You still have considerable exposure to things like software
keyloggers, modified files, etc. in the containing OS recording your
activities. One advantage of true full-disk encryption is that there is
no place to install such malware even with covert access to the machine.

Regards,







Reply With Quote
  #32 (permalink)  
Old 09-26-2006, 04:13 PM
TwistyCreek
Guest
 
Posts: n/a
Default Re: A Truecrypt Trick

"nemo_outis" <abc@xyz.com> wrote in
news:Xns9841305E6C5C1abcxyzcom@204.153.244.170:

Snip


> My prime worry was that the cryptographic
> Kerchoffs' principle would be confused with the unrelated electrical
> Kirchoff's principle/law.


I know what you mean. I HATE when the happens. :0)


>> PS-If one uses VMWare to run Win98 (or 2000) inside a Truecrypt
>> partition in Xp, (in essence a poor man's full disk encryption) are
>> you aware of any leaks into the host OS that would suggest this
>> method inferior to an actual FDE of XP?

>
> I think it's a good method for a number of reasons, not least that it
> is difficult for any acquired viruses to break out of such a sandbox.
> (Unless, of course, you network your vmware virtual machine to your
> real machines.)
>
> And leakage to the main OS should be very small (I don't know if it's
> zero).
>
> There are two remaining points which (depending on your circumstances)
> may be vulnerabilities:
>
> 1. The fact that you are using vmware (not the activities within
> vmware) will be recorded in the containing OS (in the registry,
> existence of dlls & services, etc.)
>
> 2. You still have considerable exposure to things like software
> keyloggers, modified files, etc. in the containing OS recording your
> activities. One advantage of true full-disk encryption is that there
> is no place to install such malware even with covert access to the
> machine.
>


Thanks for the reply. I'm not too worried about the key logger as it is
much more likely that, were I to acquire one, it would be via the
network. Glad you generally think my scheme is passable .

And BTW thanks for the various links you pass onto the group. They have
made for much interesting reading.

You can now resume the sparring with your foe(s).











Reply With Quote
  #33 (permalink)  
Old 09-26-2006, 06:46 PM
[Anonymous] Persona
Guest
 
Posts: n/a
Default Re: A Truecrypt Trick

In <9XKWWGHW38986.5094560185@twistycreek.com> TwistyCreek <anon@comments.header> wrote:
>"nemo_outis" <abc@xyz.com> wrote in
>news:Xns9841305E6C5C1abcxyzcom@204.153.244.170:
>
>Snip
><snip>
>
>>> PS-If one uses VMWare to run Win98 (or 2000) inside a Truecrypt
>>> partition in Xp, (in essence a poor man's full disk encryption) are
>>> you aware of any leaks into the host OS that would suggest this
>>> method inferior to an actual FDE of XP?


Watch out for "Shared memory." In the list of options for the
virtual machine, there is the option to share memory. Shared memory
may then be written to the swap file on the host OS. I forget
exactly how to turn it off - just go through every menu until
you find share memory or isolate memory (or one other that was
even worse).
>>
>> I think it's a good method for a number of reasons, not least that it
>> is difficult for any acquired viruses to break out of such a sandbox.
>> (Unless, of course, you network your vmware virtual machine to your
>> real machines.)
>>
>> And leakage to the main OS should be very small (I don't know if it's
>> zero).
>>
>> There are two remaining points which (depending on your circumstances)
>> may be vulnerabilities:
>>
>> 1. The fact that you are using vmware (not the activities within
>> vmware) will be recorded in the containing OS (in the registry,
>> existence of dlls & services, etc.)


Obfuscation: Use VMware for other OS's - Linux, another windows, etc,
and use the Truecrypt open disk for that, hidden disk for other stuff.
>>
>> 2. You still have considerable exposure to things like software
>> keyloggers, modified files, etc. in the containing OS recording your
>> activities. One advantage of true full-disk encryption is that there
>> is no place to install such malware even with covert access to the
>> machine.
>>

>
>Thanks for the reply. I'm not too worried about the key logger as it is
>much more likely that, were I to acquire one, it would be via the
>network. Glad you generally think my scheme is passable .
>
>And BTW thanks for the various links you pass onto the group. They have
>made for much interesting reading.
>
>You can now resume the sparring with your foe(s).


Persona



Reply With Quote
  #34 (permalink)  
Old 09-29-2006, 10:51 AM
incognitoergosum
Guest
 
Posts: n/a
Default Re: A Truecrypt Trick

"[Anonymous] Persona" <anonymous@bigappleremailer.com> wrote in
news:1159296417_2512@bigapple.yi.org:

> Watch out for "Shared memory." In the list of options for the
> virtual machine, there is the option to share memory. Shared memory
> may then be written to the swap file on the host OS. I forget
> exactly how to turn it off - just go through every menu until
> you find share memory or isolate memory (or one other that was
> even worse).


Thanks for the tip. Just the sort of thing I was hoping for.


> Obfuscation: Use VMware for other OS's - Linux, another windows, etc,
> and use the Truecrypt open disk for that, hidden disk for other stuff.


Yes, I was thinking along this line.


> Persona


Thanks for your reply.

Reply With Quote
Sponsored Links
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Trick or Treat ? Kevin Weaver alt.cellular.cingular 4 03-28-2007 09:40 PM
Trick to speed up finding which key goes to the BIOS (can use boot.ini or OS's boot loader) jameshanley39@yahoo.co.uk alt.comp.hardware 8 01-04-2007 08:31 AM
A simple trick to download ringtones from Cingular website for free Mike D uk.telecom.mobile 0 12-12-2006 01:15 PM
Another funny verizon trick. Kevin Weaver alt.cellular.verizon 40 09-22-2006 04:43 PM
Re: Truecrypt 4 Released! Ari Silversteinn alt.computer.security 0 11-02-2005 04:12 PM


All times are GMT. The time now is 06:14 PM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45