<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Mounted my first Luksbox, protected by a Yubikey.]]></title><description><![CDATA[<p>Mounted my first Luksbox, protected by a Yubikey. Works very well.</p><p>Compared to Gocryptfs: you have support for FIDO2 keys.</p><p>Compared to veracrypt and truecrypt, the big advantage is you don't have to reserve x Gb for the encrypted partition.</p><p><a href="https://mastodon.social/tags/luks" rel="tag">#<span>luks</span></a> <a href="https://mastodon.social/tags/encrypted" rel="tag">#<span>encrypted</span></a> <a href="https://mastodon.social/tags/partition" rel="tag">#<span>partition</span></a> <a href="https://mastodon.social/tags/volume" rel="tag">#<span>volume</span></a> <a href="https://mastodon.social/tags/fido" rel="tag">#<span>fido</span></a> <a href="https://mastodon.social/tags/crypt" rel="tag">#<span>crypt</span></a> <a href="https://mastodon.social/tags/file" rel="tag">#<span>file</span></a> <a href="https://mastodon.social/tags/linux" rel="tag">#<span>linux</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/0c5b3be5-5332-485d-ad1e-4c730caf4455/mounted-my-first-luksbox-protected-by-a-yubikey.</link><generator>RSS for Node</generator><lastBuildDate>Thu, 04 Jun 2026 21:58:37 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/0c5b3be5-5332-485d-ad1e-4c730caf4455.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 21 May 2026 12:19:15 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 15:03:03 GMT]]></title><description><![CDATA[<p><span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> <span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> <span><a href="/user/gzobra%40infosec.exchange">@<span>gzobra</span></a></span> that's the double concept of slots <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /> you can use them as backup or alternative key, but also to use a different key per user and the user can then update it's key. We could see your slots on the TUI, on the GUI it looks like that:</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116613171377059270</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116613171377059270</guid><dc:creator><![CDATA[fluxius@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 15:03:03 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:52:47 GMT]]></title><description><![CDATA[<p><span><a href="/user/fluxius%40infosec.exchange">@<span>FlUxIuS</span></a></span> <span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> <span><a href="/user/gzobra%40infosec.exchange">@<span>gzobra</span></a></span> oh ? you can share a vault with several users? that's really interesting!</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613130974314539</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613130974314539</guid><dc:creator><![CDATA[cryptax@mastodon.social]]></dc:creator><pubDate>Thu, 21 May 2026 14:52:47 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:49:36 GMT]]></title><description><![CDATA[<p><span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> <span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> <span><a href="/user/gzobra%40infosec.exchange">@<span>gzobra</span></a></span> yeah and also reserving slots to other users, so you don't leak your own passphrases and you can revoke the pass if the vault is still safe but someone's key got phished. You have also paranoid mode : PQC + FIDO2+ TPM&amp;PIN + deniable mode -&gt; but that's a really specific mode <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f604.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--smile" style="height:23px;width:auto;vertical-align:middle" title=":D" alt="😄" /></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116613118444143134</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116613118444143134</guid><dc:creator><![CDATA[fluxius@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 14:49:36 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:46:05 GMT]]></title><description><![CDATA[<p><span><a href="/user/return0media%40infosec.exchange">@<span>return0media</span></a></span> by the way, I'm actually not certain the machine learning algos can recover the initial text when the pixel size is big enough. </p><p>But yes, I could have used a full black box instead.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613104625195886</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613104625195886</guid><dc:creator><![CDATA[cryptax@mastodon.social]]></dc:creator><pubDate>Thu, 21 May 2026 14:46:05 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:44:15 GMT]]></title><description><![CDATA[<p><span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> <span><a href="/user/gzobra%40infosec.exchange">@<span>gzobra</span></a></span> <span><a href="/user/fluxius%40infosec.exchange">@<span>FlUxIuS</span></a></span> I'm using it to </p><p>1) to store particularly sensitive files I don't need all the time. I suppose that's the most common use.</p><p>2) + to store malware: I mount the luksbox only when I'm working on them. It's an additional precaution.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613097451816168</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613097451816168</guid><dc:creator><![CDATA[cryptax@mastodon.social]]></dc:creator><pubDate>Thu, 21 May 2026 14:44:15 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:43:26 GMT]]></title><description><![CDATA[<p><span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> Ahhh very cool. Thanks for explaining it to me!</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/ap/users/116590760552038843/statuses/116613094199093028</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/ap/users/116590760552038843/statuses/116613094199093028</guid><dc:creator><![CDATA[return0media@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 14:43:26 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 14:35:18 GMT]]></title><description><![CDATA[<p><span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> <span><a href="/user/return0media%40infosec.exchange">@<span>return0media</span></a></span> yes, you are right, but as <span><a href="/user/penthertz%40infosec.exchange">@<span>Penthertz</span></a></span> replied, actually it's public info, I just didn't see the use of sharing it. It does not show the passphrase or the key or anything sensitive.<br />So feel free to break it if you wish <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /></p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613062234471078</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/cryptax/statuses/116613062234471078</guid><dc:creator><![CDATA[cryptax@mastodon.social]]></dc:creator><pubDate>Thu, 21 May 2026 14:35:18 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 12:53:22 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@return0media">@<span>return0media</span></a></span> <span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> the info is actually public, first is the Argonid params and second is the credid used by the fido2 device and can be regenerated. Even with credid and salt you will need the fido2 key at the end to attempt something. If you have it you'll need the pin/passphrase to authenticate</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/Penthertz/statuses/116612661406481047</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/Penthertz/statuses/116612661406481047</guid><dc:creator><![CDATA[penthertz@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 12:53:22 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 12:47:07 GMT]]></title><description><![CDATA[<p><span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> There are machine learning algos that can unscramble this type of masking. I'd recommend using a full black box to cover it if this is actually important.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/ap/users/116590760552038843/statuses/116612636806355077</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/ap/users/116590760552038843/statuses/116612636806355077</guid><dc:creator><![CDATA[return0media@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 12:47:07 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 12:42:53 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@gzobra">@<span>gzobra</span></a></span> <span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> <span><a href="/user/fluxius%40infosec.exchange">@<span>FlUxIuS</span></a></span> feedback are welcomed! If that project can solve problems we had in the past sharing sensitive files and remembering/storing complex passwords, we'd love to know too <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/Penthertz/statuses/116612620215775454</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/Penthertz/statuses/116612620215775454</guid><dc:creator><![CDATA[penthertz@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 12:42:53 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 12:32:03 GMT]]></title><description><![CDATA[<p><span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> <br />Nice, i discover that project through your  post.</p><p><span><a href="/user/fluxius%40infosec.exchange">@<span>FlUxIuS</span></a></span>  <span><a href="https://infosec.exchange/@Penthertz">@<span>Penthertz</span></a></span> <br />Interesting project, i will try i soon.</p><p>Thank you to both of you</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/gzobra/statuses/116612577572194284</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/gzobra/statuses/116612577572194284</guid><dc:creator><![CDATA[gzobra@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 12:32:03 GMT</pubDate></item><item><title><![CDATA[Reply to Mounted my first Luksbox, protected by a Yubikey. on Thu, 21 May 2026 12:27:54 GMT]]></title><description><![CDATA[<p><span><a href="/user/cryptax%40mastodon.social">@<span>cryptax</span></a></span> <span><a href="https://infosec.exchange/@Penthertz">@<span>Penthertz</span></a></span> thank you for this warm post! FIDO2 was actually our first support before the hybrid post-quantum mode. You can play with the CLI, TUI and GUI <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /> bugs &amp; vulns finding are welcome and we also provide fuzzing harnesses also as an example</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116612561276844868</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/FlUxIuS/statuses/116612561276844868</guid><dc:creator><![CDATA[fluxius@infosec.exchange]]></dc:creator><pubDate>Thu, 21 May 2026 12:27:54 GMT</pubDate></item></channel></rss>