Schneier research team cracks TrueCrypt

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS

Researchers led by BT security expert Bruce Schneier have shown that deniable file systems — designed to hide data so effectively that there is no trace of its existence on a user's system — may not be so deniable after all, due to the interference of standard applications and of the operating system itself.

The researchers found that TrueCrypt, one of the best known deniable file system (DFS) products, left evidence of its existence in ways that would be straightforward for investigators to spot. This was due not to flaws in TrueCrypt itself but rather to the fact that the surrounding software is not designed to keep deniability intact, Schneier said.

The principle of deniability, also known as steganography, is to go one step further than encryption, hiding evidence that there is any encrypted data to search for in the first place.

Systems such as TrueCrypt are designed, for example, to allow users to store sensitive information on a laptop passing through increasingly invasive border controls, as detailed in a recent article on ZDNet.co.uk sister site CNET News.com, cited in Schneier's research.

TrueCrypt uses the AES-256, Serpent and Twofish encryption algorithms, and it has been claimed that its hidden volumes cannot be distinguished from random data. The system offers two levels of 'plausible deniability', in case the user is forced to reveal the password; one set of data is revealed by one password, while the truly hidden data is revealed by a separate password.

Schneier's research, however, focused on whether a user can plausibly deny that there is in fact any hidden data on the system, arguing that, if clear evidence can be found of hidden data, the system has failed.

"Deniability, even under a very weak model, is fundamentally challenging," Schneier said in the report. "Even when the file system may be deniable in the pure, mathematical sense, we find that the environment surrounding that file system can undermine its deniability, as well as its contents."

At the operating-system level, the team found that, by default, Windows Vista creates shortcuts to files as they are used, storing the shortcuts in the Recent Items folder. An investigator examining this folder would immediately know that the user had been editing a file, even if that file were protected by TrueCrypt. The shortcut also provides information about the volumes where the files are located, giving more evidence of the existence of hidden volumes.

Schneier argued that this fact could also be used to determine whether the user had revealed all of their hidden volumes — effectively getting around the second level of plausible deniability offered by TrueCrypt.

At the application level, researchers found that Microsoft Word's auto-saves in effect transfer hidden files to the primary volume. While the auto-recovery files are deleted after use, they can be easily recovered with a free data-recovery tool, Schneier said.

The research also found that Google Desktop's Enhanced Search feature stores cached versions of recently changed files, another compromise of deniability.

The researchers suggested ways around each of these weaknesses, such as using the same volume serial number for all hidden volumes, but argued that the real problem is more fundamental.

"Addressing it will require rethinking and re-evaluating how to build a true DFS in the context of modern operating systems and applications," Schneier wrote. "To create a DFS, it seems inevitable that the operating system (and perhaps the underlying hardware) must assist in the deniability."

He noted that the latest version of TrueCrypt, 6.0, includes a deniable operating-system feature, which TrueCrypt's developers have said they believe solves the problems raised in the paper. The team analysed TrueCrypt 5.1a.

Another approach would be to use a file system filter that would prevent applications from transferring protected data to unprotected volumes, although this might break many applications, Schneier said.

Schneier said he remains sceptical that any DFS can be made truly watertight, an opinion shared by other security researchers.

"I have a rather negative opinion about steganographic file systems," said PGP chief technology officer Jon Callas in recent comments to CNET News.com. "I just flat don't believe they work. I don't believe you can hide the data so that nobody can find it."

He said implementing such a system could even be dangerous for users. "It is unsafe to use a product that has a steganographic file system, since you can never prove you have no steganographic data," Callas said.

The study was co-authored by Schneier and University of Washington researchers Alexei Czeskis, Steven Gribble, David St Hilaire, Tadayoshi Kohno and Karl Koscher, and will be presented at the Usenix HotSec '08 conference next week in San Jose, California.

Talkback

They didn't really "crack" TrueCrypt at all, did they?

1000030281 22 July, 2008 18:49
Reply

well umm they "cracked" the ahmm found a shortcut amm well no no they did not "crack" truecrypt . but they emm ok no they did not. ok... (;

cryptedmind 10 October, 2010 03:04
Reply

Thank you many times. That;s great informational addition to my dissertation work. I think this will help me and my professor to achieve new results in computer science.

Lionelli 7 February, 2011 11:56
Reply

The headline is a straight out lie.
Is this what Zdnet has come too?
I am very dissappointed by a bogus title that claims something which is not true in the least.

Dissappointed 11 February, 2011 17:29
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

SPM

The 2 million number quoted is shipments not sales, an exact repeat of last year's dire sales of WP7. Sales to customers are likely to number only...

3 hours ago by SPM on Nokia earnings fail to shine despite Lumia
apexwm

It sounds like this is just another variable in the complex equation of Microsoft licensing, which often results in customers overpaying as it is....

4 hours ago by apexwm on UK customers to lose out in Microsoft licensing change
chonzchor

I am really thankful to you for this nice and beautiful information.I really like this. cable ties

5 hours ago by chonzchor on Currys £16.99 USB cable rip-off.
Brian Jones

What would be nice would be if Microsoft practiced consistent pricing between the US and Europe.

10 hours ago by Brian Jones via Facebook on UK customers to lose out in Microsoft licensing change
Karen Friar

@Scott Deagan: Ofcom dedicated a section to upload speeds - see page 19 onward of its full report:...

10 hours ago by Karen Friar on UK broadband speed climbs 22 percent
EUDataProtection

The EU proposals can all be read in full on the reform website: http://ec.europa.eu/justice/data-protection/minisite/index.html

11 hours ago by EUDataProtection on Firms face tough new EU fines for data breaches
Jake Rayson

Found out that Taskwarrior stores all data in plain text files: "Task writes all pending tasks to the file ~/.task/pending.data and all completed...

13 hours ago by Jake Rayson on Taskwarrior: command line task manager
ians1

"...based 6,000 miles away..." Indeed, so who do you complain to when things go wrong? I would not buy shares in Faecebook even if I could...

14 hours ago by ians1 on Facebook plans to raise $5bn via share launch
servermanagement

These are really very useful tips of backing up the system. Each tips are important and essential to prevent loosing all the data that we have....

16 hours ago by servermanagement on Ten ways to take the sting out of IT disasters
Scott Deagan

Why is the upstream never discussed? I'd like to see Ofcom explain to Internet users why people in the UK can only get a maximum of 10Mb/s upstream...

24 hours ago by Scott Deagan via Facebook on UK broadband speed climbs 22 percent
Moley

Seemingly a very strange decision, even perverse. Mind you, the basis of the decision is hardly explained here or in Cnet. Perhaps we will hear...

1 day ago by Moley on Free Maps costs Google £400K in damages in France
Jake Rayson

@OccupyACAT: I had heard mention of the Emacs extension but not the Ubiquity project. Interesting to see an idea spread almost simultaneously! Re....

1 day ago by Jake Rayson on Ubuntu HUD Intenterface? Sublime already there!
markhumphryes

With no Flash support on LoveFilm, mobile devices running Android will not be able to use it - I presume - I tried a trial via my Galaxy Tab 10.1...

1 day ago by markhumphryes on Lovefilm drops Flash, kills Linux support
manek

And people wonder why there is caution about doing business with large, consumer-focused technology companies, most of which are based 6,000 miles...

2 days ago by manek on Facebook plans to raise $5bn via share launch
manek

Yes, frameworks and smarter compilers - but I suspect a lot of the code will have to be written with parallel processing as one of its fundamental...

2 days ago by manek on Parallel computing takes a step forward
Simon Bisson and Mary Branscombe

Well, this is why I'm both fascinated and slightly worried; parallel computing and concurrency and complex architectures don't seem to be something...

2 days ago by Simon Bisson and Mary Branscombe on Parallel computing takes a step forward
ians1

Let's hope that they take more notice of their shareholders than they do of their poor customers! I have never experienced customer service as bad...

2 days ago by ians1 on Facebook plans to raise $5bn via share launch
servermanagement

Thanks for the heads up. Will definitely check this HUD Intenterface.

2 days ago by servermanagement on Linux Minterface
Will A

Some more observations by an extremely frustrated user in Canada (apparently every country has a different set of "issues"): The web interfaces...

2 days ago by Will A on Cambridge researchers knock Verified by Visa
Jake Rayson

@zdnetukuser: I hope there's more conciliation and less bitterness in the graphical shell camps, I'd like to Ubuntu to succeed, I *want* to have a...

2 days ago by Jake Rayson on Linux Minterface