Third party audit of integrated SecureDrop Workstation completed
The SecureDrop team is currently working on an integrated SecureDrop Workstation that combines the previously separate Journalist Workstation and Secure Viewing Station into a single device, based on Qubes OS. This represents a potential major change to the SecureDrop architecture and threat model, which is why we have sought independent … Read More
Advisory: Automatic Update Failure from Version 0.10.0 to 0.11.0 on Some SecureDrop Instances
Ordinarily, updates to the SecureDrop servers are performed automatically within 24 hours of a release. After the release of SecureDrop 0.11.0 on December 11, our monitoring service indicated that some SecureDrop instances were not updated as expected. Instances known to be impacted were set up before SecureDrop version 0.4 (released July 25, 2017). Read More
SecureDrop 0.11.0 Released
We are pleased to announce the release of SecureDrop 0.11.0. This release includes a fix for a low severity security regression concerning SSH logins, a kernel update, user interface improvements, a new version of Tor, a new version of Ansible, and more. A complete list of changes can be found … Read More
SecureDrop 0.11.0: Pre-Release Announcement
The release of the next version of SecureDrop, 0.11.0, is scheduled for December 11, 2018. We will send out another notification through this blog, Twitter, and the support portal when the release is live. Changes that journalists and administrators should be aware of are summarized in this blog post. A … Read More
Join us for a SecureDrop hackathon at Aaron Swartz Day this weekend in San Francisco
Photograph of Aaron Swartz by Sage Ross, Creative Commons Attribution/Share-Alike LicenseAaron Swartz was a brilliant computer scientist, a passionate digital rights activist, and a dear friend to many. He believed fiercely in freedom of speech and information, and dedicated his brief but full life to building the open web, defending … Read More
Advisory: Server installation failure with UEFI boot mode
Update, October 25: The upstream issue causing the problem described in this advisory has been resolved. If you encounter this problem again during the installation, please let us know by filing a bug report. During a SecureDrop installation against servers with with UEFI boot mode enabled, the ./securedrop-admin install command … Read More
SecureDrop 0.10.0 Released
We are pleased to announce the release of SecureDrop, 0.10.0. This release includes an update of the OSSEC monitoring software. Changes that journalists and administrators should be aware of are summarized in this blog post. A complete list of changes can be found on GitHub. What’s new in SecureDrop 0.10.0? … Read More
SecureDrop 0.10.0: Pre-Release Announcement
The release of the next version of SecureDrop, 0.10.0, is scheduled for October 23, 2018. We will send out another notification through this blog, Twitter, and the support portal when the release is live. Changes that journalists and administrators should be aware of are summarized in this blog post. A … Read More