Security Requirements and Precautions >  Authenticity and Integrity External Link

TrueCrypt – Free Open-Source Disk Encryption Software


Advertisements / Sponsored Links:
   



Authenticity and Integrity

TrueCrypt uses encryption to preserve the confidentiality of data it encrypts. TrueCrypt neither preserves nor verifies the integrity or authenticity of data it encrypts or decrypts. Hence, if you allow an adversary to modify data encrypted by TrueCrypt, he can set the value of any 16-byte block of the data to a random value. However, note that the adversary cannot choose the value that you will obtain when TrueCrypt decrypts the modified block — the value will be random. It is your responsibility to verify the integrity and authenticity of data encrypted or decrypted by TrueCrypt (for example, by using third-party software).





  Next Section >>


Search  •  Legal Notices www.truecrypt.org