SecureDrop Inbox 1.7.1 is now available and will automatically be installed as part of your regular preflight updates; no further action is needed.
This release addresses an issue where exporting to USB devices would fail because of a change in how our custom grsecurity-patched Linux kernel restricts the modules needed to decrypt LUKS- and VeraCrypt-encrypted drives. We now set a defined preload list within the export VM to ensure the necessary modules will always be available.
For some VeraCrypt drives that do not use the default settings, the fix may not be sufficient. If you continue to encounter errors, please reach out to support.
Acknowledgments
This release incorporates Freedom of the Press Foundation (FPF) contributions by Asra Ali; Giulio B; Martin C; Nathan Dyer, communications manager; Micah Lee; Kunal Mehta; Cory Francis Myers; Vicki Niu, deputy release manager; Kevin O’Gorman, release manager; Francisco Rocha; John Skinner; Dan Staples; and Rowen S.
Questions and comments
If you have questions or comments regarding this release, please contact us:
- Via Signal, either in your dedicated SecureDrop Support group, or by contacting the support account listed at securedrop.org/help/.
- Via securedrop@freedom.press (PGP encrypted) for sensitive security issues (please use judiciously), or submit a report via Bugcrowd.
We also encourage you to file nonsensitive issues via our GitHub repository.
Thank you for using SecureDrop!