Back
Technology

Microsoft Terminates VeraCrypt Developer Account, Halting Windows Updates

View source

Microsoft Terminates VeraCrypt Developer's Account, Halting Windows Updates

Microsoft has terminated an account linked to Mounir Idrassi, the developer of VeraCrypt, an open-source encryption software. This action prevents the publication of future Windows updates for VeraCrypt, a tool widely used for data encryption. Idrassi reported receiving no prior warning or explanation for the termination, which occurred in mid-January.

Account Termination and Its Impact

The termination of an account associated with Mounir Idrassi, the developer of VeraCrypt, occurred in mid-January. This specific account was reportedly used for signing Windows drivers and the bootloader, which are essential steps for releasing Windows updates for the software.

Consequently, this termination halts the ability to deliver new releases for Windows, which is the primary platform for the majority of VeraCrypt users. Updates for Linux and macOS versions of VeraCrypt can, however, continue to be released as they are unaffected.

Developer Left Without Explanation

Idrassi stated he received no prior warnings or emails from Microsoft regarding the termination. He indicated he discovered the account was no longer accessible when he attempted to use it.

He shared a message he reported receiving from Microsoft, which stated:

"Based on the information you have provided to date, we have determined that your organization does not currently meet the requirements to pass verification. There are no appeals available, we have closed your application."

According to Idrassi, this message concerned his company, IDRIX. He expressed that he does not understand which requirements IDRIX allegedly failed to meet, noting that the company's status had not changed. Idrassi attempted to contact Microsoft support but reported receiving automated, AI-generated responses, which he described as lacking a clear explanation for the decision.

About VeraCrypt

VeraCrypt is an open-source encryption software designed for encrypting data at rest. It allows users to create encrypted partitions or volumes.

The tool is based on TrueCrypt and includes a feature for creating a second, innocuous-looking volume. This design is intended to appear legitimate if users are compelled to provide credentials, offering an additional layer of plausible deniability.

Pattern of Unexplained Suspensions?

Jason Donenfeld, the creator of the VPN client WireGuard, has also reported a similar experience. He stated that his account was suspended without warning or notification when he attempted to publish an update to Microsoft.

Microsoft Remains Silent

Microsoft acknowledged a request for comment regarding the VeraCrypt account termination. However, the company did not provide a response by the time of publication.