Mounir IDRASSI
c0f8179f2a
Windows: enhancement to RAM encryption
...
- use a more standard-looking memory value tag instead of fully random one that will look suspicious and outstanding
- If we fail to allocate 1MiB for derivation area, we device the size by two in a loop until we succeed. This is better than falling back directly to 8KiB size
- Better method to derive actual encryption key: instead of simply duplicating 128bit key value, we combine a xor addition and self-encryption to build a 256-bit key
- use both encID and pbKeyDerivationArea to derive IV for encryption and not only endID
2023-09-29 22:26:54 +02:00
Mounir IDRASSI
5192eac233
Windows Driver: Use KeQueryInterruptTimePrecise on Windows 8.1 and newer as better seed for internal RNG compared to KeQueryInterruptTime
2023-09-29 22:14:43 +02:00
Mounir IDRASSI
662b8d1b2f
Windows: during Setup, and if VeraCrypt already installed, open online help only if PC connected to Internet
2023-09-26 01:22:24 +02:00
DLL125
2363506e09
Libzip 1.10.1 ( #1209 )
...
Updated to the latest version for the VeraCrypt 1.26.6 release.
2023-09-24 10:18:54 +02:00
Mounir IDRASSI
937c5cd5cd
Windows: always open online help in case of Setup because local help may be outdated
2023-09-24 01:41:35 +02:00
Mounir IDRASSI
76c64d49ea
Windows: Add tooltip message and help button for new option to disable memory protection
...
Also a dedicated page in the documentation was added for it.
2023-09-24 01:26:02 +02:00
Mounir IDRASSI
81c87a8f0b
Windows: Load Riched20.dll to use RichEdit control. Use InitCommonControlsEx instead of InitCommonControls
2023-09-21 22:42:35 +02:00
Mounir IDRASSI
d02734dfaa
Update Release Notes. Increment version to 1.26.6.
2023-09-21 01:31:35 +02:00
Mounir IDRASSI
6c7e055f3f
Windows: use separate name for SetProcessMitigationPolicy function point. Remove unneeded boolean
2023-09-21 01:16:11 +02:00
Mounir IDRASSI
0f3ae268a4
Windows: Add setting in main UI and setup wizard to disable memory protection
...
This can be useful for users who need Accessibility software that may not work when memory protection is active in VeraCrypt
2023-09-20 09:39:22 +02:00
Mounir IDRASSI
b1657e88e4
Windows Security: make memory protection enabled by default. Add process mitigation (ASLR, Dynamic code, extension points)
...
Memory protection can be disabled using registry value "VeraCryptEnableMemoryProtection" under the key "HKLM\SYSTEM\CurrentControlSet\Services\veracrypt"
2023-09-18 00:13:52 +02:00
TigerxWood
1ff56db112
Update Language.xml ( #1199 )
...
Corrected small typo
2023-09-15 23:49:08 +02:00
Mounir IDRASSI
d2f2defca9
Windows: replace CoInitialize calls with CoInitializeEx
2023-09-11 00:03:28 +02:00
Mounir IDRASSI
f15052e68d
Windows: Add link in keyfiles dialog to documentation page for risks of third-party file extensions usage.
2023-09-08 09:38:51 +02:00
TigerxWood
d74ea60436
Update Language.xml ( #1192 )
...
Corected a typo
2023-09-08 09:34:44 +02:00
Mounir IDRASSI
0ad5c43eb4
Windows: remove recommendation of keyfiles files extensions and update documentation to mention risks of third-party file extensions.
...
This commit also adds red color to the warning text about keyfiles in keyfiles dialogs.
2023-09-06 01:42:23 +02:00
Mounir IDRASSI
2a6726b00e
Windows: Replace legacy file/dir selection APIs with modern IFileDialog interface
...
We remove usage of GetOpenFileNameW/GetSaveFileNameW/SHBrowseForFolderW which are deprecated by Microsoft
2023-09-03 23:42:41 +02:00
Mounir IDRASSI
201d09ff5a
Windows: remove legacy code (XP, Vista). Simplify code since Windows 7 is now minimal OS version.
2023-09-03 16:47:41 +02:00
Mounir IDRASSI
d68b9546bd
Windows: simpler and more robust safe dll loading combined with delay loading thanks to Windows 7 being minimum supported version.
...
We also block execution on Windows versions older than Windows 7.
A lot of code was removed thanks to this.
2023-09-03 00:58:34 +02:00
Mounir IDRASSI
fd0d2e3353
Windows: Set minimum build target to Windows 7
2023-08-20 09:59:47 +02:00
DLL125
4f92ba5484
Update zlib to latest ( #1181 )
...
* Update zlib to latest
* Update copyright
Updated copyright of zlib.
2023-08-20 09:21:54 +02:00
Mounir IDRASSI
e47f6e900c
Update Release Notes and set date of 1.26.5 to August 15th
2023-08-15 09:48:51 +02:00
Mounir IDRASSI
fcf0cb94f1
Increment version to 1.26.5. Update signed Windows drivers.
2023-08-14 01:45:37 +02:00
Mounir IDRASSI
f84d235cf1
Windows: Implement support for mounting partially encrypted system partitions
...
For now, we force ReadOnly mounting for such partitions.
2023-08-13 22:50:37 +02:00
Mounir IDRASSI
8c7962bda7
Windows: Better way to enable required privileges for FastCreate Options
...
If we can set required privilege, we ask the user using UAC to enable them.
2023-08-13 00:56:49 +02:00
Mounir IDRASSI
c15b84b32d
Windows: Fix failure creating Traveler Disk caused by outdated hardcoded value of MS certificate
...
We also rename the variables gpbSha256CodeSignCertFingerprint and gpbSha256MSCodeSignCertFingerprint to gpbSha512CodeSignCertFingerprint and gpbSha512MSCodeSignCertFingerprint respectively to reflect the fact that they are actually SHA512 hash values and not SHA256 ones.
2023-08-10 01:23:24 +02:00
Mounir IDRASSI
dab261c694
Linux: capture both stdout and stderr in popen call to avoid printing anything
...
If an error happens, error message will be read from popen pipe and so
libpcsclite.so will not be found. This is the same outcome as when
stdout is empty.
2023-08-06 01:06:19 +02:00
Mounir IDRASSI
16bb1de3a6
Security: ensure that XTS primary key is different from secondary key when creating volumes
...
This is unlikely to happen thanks to random generator properties but we much add this check to prevent an attack described in page 3 of https://csrc.nist.gov/csrc/media/Projects/crypto-publication-review-project/documents/initial-comments/sp800-38e-initial-public-comments-2021.pdf
2023-08-05 10:55:46 +02:00
Mounir IDRASSI
e8f83544ea
Windows: Fix false positive detection of new device insertion when clear keys option is enable
...
When this option is enabled, we first build the list of currently inserted devices then we start listening to insertion events.
When a device insertion occurs, we check if this device is on our list and if yes, we ignore its insertion.
We also ignore devices whose Device ID starts with "SWD\" and "ROOT\" since these are not real devices.
2023-08-05 00:45:39 +02:00
Mounir IDRASSI
d4fdba1d29
Update Release Notes and set date of 1.26.4 to July 24th
2023-07-24 09:13:34 +02:00
Mounir IDRASSI
3f976c24d2
Linux/macOS: Remove TrueCrypt support
2023-07-24 08:48:52 +02:00
Mounir IDRASSI
b28cf591c0
XML Language files: remove \r from new entries as it is automatically added by code
2023-07-23 12:00:34 +02:00
Mounir IDRASSI
334ea9c0b9
Windows: Make Expander progress messages translatable
2023-07-23 10:00:45 +02:00
Mounir IDRASSI
fa6359d424
Windows: Remove TrueCrypt support. Increment version to 1.26.4.
2023-07-22 10:25:22 +02:00
Mounir IDRASSI
34b00fa825
Windows: Fix compiler warnings
2023-07-18 08:38:02 +02:00
Mounir IDRASSI
c0785aa1d4
Windows: Fix buffer overrun caused by bug in UpperCaseCopy function
2023-07-17 14:28:45 +02:00
Mounir IDRASSI
9607b9708c
Windows: Fix link error with latest libzip by adding new file zip_source_pass_to_lower_layer.c tp VS projects
2023-07-17 14:26:53 +02:00
DLL125
65765798d8
Libzip ( #1152 )
...
* Update LZMA to latest
* Update Libzip
Libzip updated to latest.
2023-07-17 14:11:12 +02:00
Mounir IDRASSI
6267b91931
Windows: fix issue with fastCreate by requesting SE_MANAGE_VOLUME_NAME privilege before calling CreateFile
...
This ensures that the returned handle inherits the privilege
2023-07-16 11:08:24 +02:00
Mounir IDRASSI
7ada94d36b
Windows: enhance secure desktop handling to try to workaround Windows 11 issue
...
Several enhancements implemented:
- replace CreateThread by _beginthreadex to avoid potential issues when using C runtime
- use an event to notify monitoring thread to stop instead of a volatile boolean
- perform switch to the regular desktop in the main thread and not in the secure desktop thread
2023-07-15 02:59:13 +02:00
Mounir IDRASSI
0e49b7bc33
Windows: Fix regression when creating multiple keyfiles with a fixed size
2023-07-02 22:36:33 +02:00
Jertzukka
3b80c8416b
Renormalize 7zWindows.h from CRLF to LF line separator as intended ( #1144 )
2023-07-02 21:51:44 +02:00
Mounir IDRASSI
d2caa77207
Fix compiler type-cast warnings
2023-07-02 15:25:21 +02:00
Mounir IDRASSI
fe30ebe3f3
Update Release Notes with latest changes.
2023-07-02 15:01:28 +02:00
Mounir IDRASSI
580423b5dd
Windows: Add missing header changes needed for previous commit
2023-07-01 23:32:44 +02:00
Mounir IDRASSI
7a3daa389c
Windows: Make API formatting fallback to format.com in case of elevation. remove dead code from ExternalFormatFs
...
We also modify UacFormatNtfs/UacFormatFs to return actual error code in case of failure
2023-07-01 22:46:01 +02:00
Mounir IDRASSI
a388262a2e
Windows: fix compilation warnings
2023-07-01 15:17:24 +02:00
Mounir IDRASSI
0bfed6553d
Windows: Fix formatting issue during volume creation by using /Y for format.com and specifying removal parameter in FormatEx
...
The usage of /Y parameter in format.com simplifies the logic and makes the code robust since we don't need to send \n to the format.com process.
Specifying RemovableMedia parameter to FormatEx fixes its failure in Windows 10 and later to perform quick format. This is also more adequate since we are mounting the volume as removable media for the formatting process.
We also add better error management in order to display adequate error message to the user in case of failure
2023-07-01 15:16:46 +02:00
Mounir IDRASSI
d2efeaffe7
Correctly detect ARM builds when listing CPU features in headers
2023-06-30 00:34:16 +02:00
Mounir IDRASSI
034b64f415
EMV keyfile support: Overall code improvements and bug fixes
2023-06-29 00:06:20 +02:00