Conversation:
Notices
-
Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca (bobjonkmanformer)'s status on Monday, 06-Jan-2014 03:13:33 EST Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca Of course !crypto is difficult! Remember when someone cleaned up the OpenSSL source code by removing the uninitialized buffer that contributed to entropy? http://www.debian.org/security/2008/dsa-1571 It would be good for the !FreeSoftware world if all security code was independently audited. -
Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca (bobjonkmanformer)'s status on Monday, 06-Jan-2014 03:18:28 EST Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca Speaking of auditing code: http://istruecryptauditedyet.com/ (Answer: No.) A friend speculated that the funds raised to audit Truecrypt ($46,420) is probably far greater than the Truecrypt developers have ever received in donations for their work. http://www.indiegogo.com/projects/the-truecrypt-audit -
qbi (qbi)'s status on Monday, 06-Jan-2014 04:36:41 EST qbi @bobjonkman The cost for a !crypto audit usually is much higher (8-10 times) than the development cost. So this makes sense.
-