Only the paranoid survive
Only the paranoid survive

Linux for the paranoid

Tinfoil Hat is 'over engineered' and very, very secure

Written by James Middleton

Last weekend's CodeCon conference in San Francisco saw the launch of Tinfoil Hat Linux, a self-proclaimed "exercise in over engineering" and security.

What started out as a secure, single floppy, bootable Linux distribution for storing PGP keys, and encrypting, signing and wiping files, turned into a useable Linux distribution for the totally paranoid.

Advertisement

The homepage for Tinfoil Hat Linux claims that the distribution is effective if customers are using a computer that could have a keystroke logger installed, or if they need to use personal PGP keys at work, school or at a web hosting facility where they don't trust or own the equipment.

It is also useful if users maintain a PGP Certificate Authority or signing key and need a safe place to use the key. Or even if they simply don't want to risk putting a PGP key on a hard drive where someone else might have access to it.

Tinfoil Hat Linux protects against worms and viruses as the operating system doesn't support networking. It compiles all binaries statically, and all non-root partitions are mounted with no-execute permissions.

All temporary files are created on an encrypted Ramdisk which is destroyed on shutdown preventing file retrieval "even the PGP key file information can be stored encrypted on the floppy", according to the author.

The operating system even protects against keystroke monitoring by using a video game-style character entry system, like playing Asteroids, instead of typing in a pass phrase.

And if you start the 'Paranoid' options, random encryption keys are generated in the background and random documents are encrypted making it harder to determine when the real encryption is taking place.

Tags:

Related articles

Related whitepapers

Related jobs

Do you agree?

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

Shaun Nichols and Iain Thomson

10 Oct 2008

7.33 MBPodcast Special: Views from the Valley More...

Podcast image

09 Oct 2008

12.99 MBComputing podcast - IT implications of the banking crisis, and the FSA clamps down on IT security More...

Shaun Nichols and Iain Thomson

03 Oct 2008

6.49 MBPodcast Special: Views from the Valley More...

Poll

Google Android

Google Android

Are you intending to try out a Google Android mobile phone?

Previous poll results

Spotlight

MoD building

Latest data breach leads MPs to demand culture change

MoD admits to losing a hard drive containing up to...  More...

Online shopping

E-retailers urged to prepare for Christmas

Credit crunch sending shoppers online for cheaper presents   More...

Mobile phone

Emerging markets drive mobile growth

Mobile penetration rates expected to reach 95 per cent by...  More...

Digital information

Poor data classification costing companies dear

Millions wasted on searching through clutter, says analyst   More...

Primary Navigation