View Single Post
Old 12-17-2012, 08:05 AM  
u-Bob
there's no $$$ in porn
 
u-Bob's Avatar
 
Industry Role:
Join Date: Jul 2005
Location: icq: 195./568.-230 (btw: not getting offline msgs)
Posts: 33,063
Quote:
Originally Posted by Monotony View Post
The algorithm is static so entropy is useful

http://en.wikipedia.org/wiki/Entropy_%28computing%29
Exactly. Truecrypt doesn't use your password "as-is", but performs some cryptographic operations on it. The (pseudo)random number generator, that's part of this operation, starts with a seed. If the seed was a well-known or predictable value (like the time the truecrypt volume was created), an attacker would be able to generate data that is identical to the data your Truecrypt install generated when it created the container. By moving your mouse around, you are creating data that the attacker cannot predict or reproduce.
u-Bob is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote