Just found out about luksDump in LUKS (cryptsetup), Is there a way to hide all these sensitive data like used cipher and hash?

I have been using cryptsetup for a while now and just found out about the option ‘luksDump’. I am used to similar tools like veracrypt and truecrypt and I am a bit shocked that all these vulnerable data are so easily accessible. If I remem… Continue reading Just found out about luksDump in LUKS (cryptsetup), Is there a way to hide all these sensitive data like used cipher and hash?

How good/bad are these transparent Linux consumer FDE setup options? (e.g. for auto-unlocking LUKS)

UPDATED Summary: I’m looking at Linux FDE options that are transparent to the user (my parents) in that the user doesn’t need to enter 2 passwords. I found/thought of several options and tried to think through the security implications of … Continue reading How good/bad are these transparent Linux consumer FDE setup options? (e.g. for auto-unlocking LUKS)

Is LUKS still an effective option for consumer FDE considering Elcomsoft can break it?

I use Fedora Linux and was recently looking into doing Full Disk Encryption on data drives such as /home on some of my / my family’s PCs. I understand that LUKS security will be partially dependent on having strong passwords and not doing … Continue reading Is LUKS still an effective option for consumer FDE considering Elcomsoft can break it?

Linux/LUKS/Full Disk Encryption: How can I mitigate SSD/flash media security security risk caused by unreliable physical deletion?

Firstly, I do not think my question is answered by SSD full disk encryption as I am not looking for a binary "is FDE secure" – nothing is perfectly secure; rather I am looking for possible solutions to the specific SSD/FDE encryp… Continue reading Linux/LUKS/Full Disk Encryption: How can I mitigate SSD/flash media security security risk caused by unreliable physical deletion?