Cryptomator

Last updated
Cryptomator
Original author(s) Tobias Hagemann [1]
Developer(s) Skymatic GmbH
Initial releaseMarch 9, 2016;8 years ago (2016-03-09)
Stable release
1.14.0 (Windows) / September 17, 2024;26 days ago (2024-09-17)
Repository
Written in Java, CSS
Operating system Windows, MacOS, Linux, Android, iOS
Platform x86-64, ARM
Available in48 [2] languages
License GPLv3 [3]
Website cryptomator.org

Cryptomator is an open source encryption software that provides encryption for cloud drives. It provides transparent, client-side encryption for personal cloud storage. [4] Cryptomator encrypts each file separately and then allows the user to sync files with a cloud or local storage of choice. [5] It is available for all major operating system including Android, iOS, Windows, Mac, Linux. [6]

Contents

Cryptomator uses AES-256 standard encryption and WebDAV and relies on its open-source model for software verifiability, trust and bug fixing. [7] The software encrypts each file individually. [8]

History

In 2017, Cure53 audited the software. [9] [10] Cryptomator was lauded for its high degree of robustness in cryptographic implementation, but criticized use of AES in insecure ECB mode. Tobias Hagemann, however, said this was a false positive. "This is due to the Java Cryptography Extension, where the ECB mode must be specified for the creation of the SIV mode, even though this is and was never used by Cryptomator." ^ [10]

In December 2021, Cryptomator 2.0 was released for iOS, which was rewritten in Swift and integrated with the native iOS Files app. [11] [12]

In January 2022, an update was released for a bug that leaked file path to Apple, because of the integration with Apple's file and use of File Provider Extension API. [13]

Reception

Cryptomator received the CeBIT innovation award in 2016 for "Usable Security and Privacy". [14] [15]

Related Research Articles

FileVault is a disk encryption program in Mac OS X 10.3 Panther (2003) and later. It performs on-the-fly encryption with volumes on Mac computers.

<span class="mw-page-title-main">Pages (word processor)</span> Word processor developed by Apple Inc.

Pages is a word processor developed by Apple Inc. It is part of the iWork productivity suite and runs on the macOS, iPadOS, and iOS operating systems. It is also available on iCloud on the web. The first version of Pages was released in February 2005. Pages is marketed by Apple as an easy-to-use application that allows users to quickly create documents on their devices. Many Apple-designed templates comprising different themes are included with Pages.

Disk encryption is a special case of data at rest protection when the storage medium is a sector-addressable device. This article presents cryptographic aspects of the problem. For an overview, see disk encryption. For discussion of different software packages and hardware devices devoted to this problem, see disk encryption software and disk encryption hardware.

EncFS is a Free (LGPL) FUSE-based cryptographic filesystem. It transparently encrypts files, using an arbitrary directory as storage for the encrypted files.

Institute of Electrical and Electronics Engineers (IEEE) standardization project for encryption of stored data, but more generically refers to the Security in Storage Working Group (SISWG), which includes a family of standards for protection of stored data and for the corresponding cryptographic key management.

<span class="mw-page-title-main">BestCrypt</span> Commercial disk encryption app available for Windows, Linux, macOS and Android

BestCrypt, developed by Jetico, is a commercial disk encryption app available for Windows, Linux, macOS and Android.

This is a technical feature comparison of different disk encryption software.

<span class="mw-page-title-main">PeaZip</span> File archive computer program

PeaZip is a free and open-source file manager and file archiver for Microsoft Windows, ReactOS, Linux, MacOS and BSD by Giorgio Tani. It supports its native PEA archive format and other mainstream formats, with special focus on handling open formats. Version 9.4.0 supported 234 file extensions.

There are various implementations of the Advanced Encryption Standard, also known as Rijndael.

<span class="mw-page-title-main">Linoma Software</span>

Linoma Software was a developer of secure managed file transfer and IBM i software solutions. The company was acquired by HelpSystems in June 2016. Mid-sized companies, large enterprises and government entities use Linoma's software products to protect sensitive data and comply with data security regulations such as PCI DSS, HIPAA/HITECH, SOX, GLBA and state privacy laws. Linoma's software runs on a variety of platforms including Windows, Linux, UNIX, IBM i, AIX, Solaris, HP-UX and Mac OS X.

<span class="mw-page-title-main">Hacking of consumer electronics</span>

The hacking of consumer electronics is a common practice that users perform to customize and modify their devices beyond what is typically possible. This activity has a long history, dating from the days of early computer, programming, and electronics hobbyists.

<span class="mw-page-title-main">Xojo</span> Programming environment and programming language

The Xojo programming environment and programming language is developed and commercially marketed by Xojo, Inc. of Austin, Texas for software development targeting macOS, Microsoft Windows, Linux, iOS, Android, the Web and Raspberry Pi. Xojo uses a proprietary object-oriented language.

Client-side encryption is the cryptographic technique of encrypting data on the sender's side, before it is transmitted to a server such as a cloud storage service. Client-side encryption features an encryption key that is not available to the service provider, making it difficult or impossible for service providers to decrypt hosted data. Client-side encryption allows for the creation of applications whose providers cannot access the data its users have stored, thus offering a high level of privacy.

Peerio was a cross-platform end-to-end encrypted application that provided secure messaging, file sharing, and cloud file storage. Peerio was available as an application for iOS, Android, macOS, Windows, and Linux. Peerio (Legacy) was originally released on 14 January 2015, and was replaced by Peerio 2 on 15 June 2017. The app is discontinued.

<span class="mw-page-title-main">Enpass</span> Password manager

Enpass is a freemium password manager and passkey manager available for MacOS, Windows, iOS, Android and Linux, with browser extensions for all major browsers, and pricing plans for both personal use and business.

<span class="mw-page-title-main">KeRanger</span> MacOS ransomware

KeRanger is a ransomware trojan horse targeting computers running macOS. Discovered on March 4, 2016, by Palo Alto Networks, it affected more than 7,000 Mac users.

Apple File System (APFS) is a proprietary file system developed and deployed by Apple Inc. for macOS Sierra (10.12.4) and later, iOS 10.3, tvOS 10.2, watchOS 3.2, and all versions of iPadOS. It aims to fix core problems of HFS+, APFS's predecessor on these operating systems. APFS is optimized for solid-state drive storage and supports encryption, snapshots, and increased data integrity, among other capabilities.

<span class="mw-page-title-main">Hardware-based encryption</span> Use of computer hardware to assist software in the process of data encryption

Hardware-based encryption is the use of computer hardware to assist software, or sometimes replace software, in the process of data encryption. Typically, this is implemented as part of the processor's instruction set. For example, the AES encryption algorithm can be implemented using the AES instruction set on the ubiquitous x86 architecture. Such instructions also exist on the ARM architecture. However, more unusual systems exist where the cryptography module is separate from the central processor, instead being implemented as a coprocessor, in particular a secure cryptoprocessor or cryptographic accelerator, of which an example is the IBM 4758, or its successor, the IBM 4764. Hardware implementations can be faster and less prone to exploitation than traditional software implementations, and furthermore can be protected against tampering.

<span class="mw-page-title-main">Element (software)</span> Decentralized encrypted chat and collaboration software powered by the Matrix protocol

Element is a free and open-source software instant messaging client implementing the Matrix protocol.

RustDesk is a remote access and remote control software, primarily written in Rust, that enables remote maintenance of computers and other devices. The RustDesk client runs on operating systems such as Microsoft Windows, Apple MacOS, Apple iOS, Android and common Linux distributions. RustDesk has the aspiration to be an open-source alternative to remote desktop software such as TeamViewer or AnyDesk. As a result, RustDesk can function without relying on additional tools such as VPNs or port forwarding, even behind firewalls or NATs.

References

  1. Swanner, Nate (2016-03-09). "Cryptomator encrypts iOS and desktop files for the cloud". TNW | Apple. Retrieved 2023-10-16.
  2. "Cryptomator dashboard in Crowdin". translate.cryptomator.org.
  3. "cryptomator/LICENSE.txt at develop · cryptomator/cryptomator". GitHub.
  4. "Cryptomator - Free Cloud Encryption for Dropbox & Co". Cryptomator. Retrieved 2022-08-15.
  5. him. (28 April 2020). "Encrypt Your Files Before Uploading it to Cloud With Cryptomator". itsfoss.com. Retrieved 2022-08-15.
  6. "Flathub—An app store and build service for Linux". flathub.org. Retrieved 2022-08-15.
  7. "t3n – digital pioneers | Das Magazin für digitales Business". t3n.de (in German). Retrieved 2022-08-19.
  8. A, Damián (2017-09-10). "Cryptomator, client-side encryption software". Ubunlog. Retrieved 2023-04-08.
  9. "Pentest-Report Tresor Application Crypto 07.-09.2017" (PDF).
  10. 1 2 "Golem.de: IT-News für Profis". www.golem.de. Retrieved 2022-08-19.
  11. "'Cryptomator' 2.0 is Here and it Integrates Into iOS Files App". The Mac Observer. 21 December 2021. Retrieved 2022-08-19.
  12. "Cryptomator". App Store. 2023-03-13. Retrieved 2023-08-23.
  13. Orr, Andrew (2022-01-11). "Update Immediately: Bug in 'Cryptomator' Leaks Encrypted File Paths to Apple". The Mac Observer. Retrieved 2022-08-19.
  14. Welle (www.dw.com), Deutsche. "Cebit award shows innovation doesn't always have to be innovative | DW | 16.03.2016". DW.COM. Retrieved 2022-08-19.
  15. "Sonderpreis: Cryptomator - BMBF CEBIT Innovation Award". Archived from the original on 2019-05-25. Retrieved 2022-08-19.