VeraCrypt

AM Crypto · Open-source disk encryption for file containers and storage devices, with on-the-fly encryption, hidden volumes and a macOS desktop interface.

CaskSecurity & PrivacyChip Apple · Intel
Inicio
De homebrew/cask
Instalaciones en los últimos 30 días195Puesto 503 en Apps
Instalaciones del último año4,7 milTotal de los últimos 365 días
Última versión1.26.29ayer · 7 oct
Tamaño de descarga20MBarm64 / x86_64 · dmg
Frecuencia de actualizaciónIrregular1 versión en 30 días
  1. 1.26.29

    ActualizadoParchemié, 7 oct

    Editado por OpenNavoInclusión en Homebrew 12 jun 06:05

    Adds Argon2id for non-system volumes and hardens parsers; improves macOS formatting, volume recovery and FUSE-T mounting, with security fixes documented by platform.

    1.26.29 (June 9 th , 2026): All OSes: Add Argon2id as an alternative memory-hard KDF for non-system volumes. Use "KDF" terminology in the user interface and documentation instead of "PKCS-5 PRF". When changing a volume password or changing only a volume header KDF, use the selected KDF's default PIM when a different KDF is selected unless a new PIM is explicitly specified. Update logo icons with simplified icons without extra label text. Harden XML and TLV parsers against malformed input. Security: Fix GHSA-94c6-mgmv-mqc5 : non-default WOLFCRYPT=1 builds now use wolfCrypt PBKDF2 instead of HKDF and honor VeraCrypt's PBKDF2 iteration count. Reported by https://github.com/vastblast CVE-2026-53762 Fix CPU feature detection and crypto implementation edge cases, including AVX2/leaf 7 detection, BLAKE2s/Argon2 no-SSE2 x86 fallback paths, Camellia SSSE3 dispatch, Twofish x64 multiblock tail handling and Whirlpool alignment. Update documentation, including Argon2id/KDF information and split Windows/Unix command line usage pages. Update translations. Windows: Fix rare BSOD (Blue Screen of Death) issue affecting the VeraCrypt driver. Fix hibernation crash on fresh Windows 11 25H2 installations. Security: Fix GHSA-jjcr-75w7-58jp : hidden volume quick format no longer uses the file-container allocation shortcut that wrote plaintext zero sectors at 128 MiB intervals, preserving plausible deniability. Reported by https://github.com/vastblast Regression introduced in 1.26.6 CVE-2026-54073 Harden Windows driver input validation and crash dump filter handling (GH PR #1590). Improve driver I/O handling, including safer request completion, ordered volume flush barriers, and better VERIFY/TRIM validation. Fix PBKDF XSTATE cleanup and add Win64 unwind metadata for AES assembly. Speed up mounting when KDF autodetection is selected. Allow selecting which KDF algorithms are included in the benchmark dialog. Allow canceling long mount operations from the wait dialog and with the new /cancelmount CLI switch, including auto-mount scans. Add support for new Microsoft UEFI CA 2023 signed EFI bootloaders while preserving Microsoft UEFI CA 2011 support. Improve EFI system encryption repair and upgrade handling, including stuck decryption finalization, Post-OOBE repair, loader restoration verification, and clearer missing-loader reporting. Fix EFI DcsProp rewrite handling. Fix ghost drive letter after command line unmount (GH #337, GH #1426). Fix favorite volume mount race. Update stored favorite volume PIM/KDF metadata after password or header KDF changes. Fix elevated COM format drive validation and device path normalization (GH #1670). Fix ReFS formatting during volume creation. Fix MSI traveler disk creation with WHQL-signed drivers, ARM64 MSI build, Start Menu folder upgrades, and discovery of newer SDK MSI tools. Add CLI switch /protectScreen to allow disabling screen protection in portable mode (cf documentation). Add argument to CLI switch /protectMemory to allow disabling memory protection in portable mode (cf documentation). Add setting and CLI switch /enableIME to allow enabling Input Method Editor (IME) in Secure Desktop. Use tab control for VeraCrypt preferences to reduce clutter and size of the dialog. Provide VeraCrypt C/C++ SDK for creating volumes ( https://github.com/veracrypt/VeraCrypt-SDK ). Update LZMA SDK to version 26.01. Linux: Update Ubuntu 25.04 dependency to require libwxgtk3.2-1t64 package. Add support for building against FUSE3. Add in-kernel NTFS driver selection for NTFS mounts, including --filesystem=kernel-ntfs and -m kernelntfs . --filesystem=ntfs3 now pins the kernel ntfs3 driver and bypasses mount helpers such as mount.ntfs3 . Fix AppImage portability and language loading, bundle a matching FUSE library, and allow AppImage file name to start with "veracrypt" in any case. Suppress redundant "already running" dialog and store the GUI instance lock under XDG paths. Add emergency cleanup for stale unmounts. Parallelize header KDF autodetection. Honor nokernelcrypto during external formatting. On WSL, open mounted volumes using Windows Explorer. Add support for reproducible Linux builds, including SOURCE_DATE_EPOCH handling, DEB/RPM packages, and Arch package builds. Add OpenWrt package build and QEMU test scripts. Fix CMake 4 compatibility, CentOS 6 GCC 4.4 builds, and wxWidgets-related build issues. Linux and macOS: Fix initial width of columns in main UI. Enable Quick Format for normal file containers. The container is sized with ftruncate() , so the host filesystem may keep regions unwritten or sparse until data is written to them. Fix hidden volume size estimation for exFAT outer volumes. Fix hidden volume FAT size limit handling. Fix erroneous 2 TiB limit for hidden file containers in GUI wizard. Show volume creation finalization stages. Collect mouse entropy from nested controls in the volume creation wizard. Fix remaining wxWidgets sizer flags. macOS: Use SMB backend for FUSE-T auxiliary mounts and improve FUSE-T SMB metadata handling and mount stability. Recover mounted volume mount points. Validate format wizard device targets and block partitioned whole-disk alias bypasses. Run APFS formatter elevated when needed and prepare APFS formatter device aliases. Force fresh exFAT layout when formatting volumes. Fix Command-A in password fields. Link against wxWidgets 3.2.10 and allow overriding the deployment target. BSD: FreeBSD: link static wxWidgets builds with iconv. OpenBSD: fix device-hosted volume sizing, honor doas user for mount ownership and FUSE access, and fix CLI build and PCSC exit handling.

    Scope: The full official notes include platform-specific changes; Windows and Linux changes do not automatically apply to the macOS package.

    Source: https://veracrypt.io/en/Release Notes.html

  2. 1.26.24

    Parchelun, 1 ene 1

    Editado por OpenNavoInclusión en Homebrew 31 may 2025 14:16

    Fixes macOS sudo-session checks and Hungarian translations, adds a command-line symlink, updates terminology and translations, and fixes big-endian Whirlpool.

    1.26.24 (May 30 th , 2025): All OSes: Fix whirlpool implementation for big-endian platforms (GH #1529). Rename "Dismount All" to "Unmount All" in UI. Use ALT+u as new accelerator key instead of ALT+s Add contributed Chinese and Russian CHM documentation. Update translations. Windows: Implemented screen protection against screenshots and screen recording, enabled by default. This feature can be disabled during installation or via the Performance/Driver Configuration settings. Added checkboxes to the MSI installer to control memory protection and screen protection features. Introduced command-line options DISABLEMEMORYPROTECTION and DISABLESCREENPROTECTION for the MSI installer to manage these features. Both options accept values 0 (enabled) or 1 (disabled). Example usage: msiexec /i VeraCrypt_Setup_x64_1.26.24.msi DISABLESCREENPROTECTION=1 /qn REBOOT=ReallySuppress MSIRESTARTMANAGERCONTROL=Disable ACCEPTLICENSE=YES Fix race conditions when multiple instances of veracrypt.exe are started simultaneously. Updated libzip to version 1.11.3. Linux: Add support for AppImage packaging and usage. Fix absolute path of 'true' command not being used when checking if sudo session is active. Fix failure to use Hungarian language translations. Improve generic installer scripts (GH #1514). Add support for /run/media/veracrypt as default mount prefix when /media is not available(GH #1524). Remove pcsclite dependency from .deb/.rpm packages since it is detected/loaded dynamically at runtime. macOS: Fix absolute path of 'true' command not being used when checking if sudo session is active. Create simlink of VeraCrypt in /usr/local/bin to allow using it from command line. Fix failure to use Hungarian language translations.

    Scope: The full official notes include platform-specific changes; Windows and Linux changes do not automatically apply to the macOS package.

    Source: https://veracrypt.io/en/Release Notes.html

  3. 1.26.20

    Parchelun, 1 ene 1

    Editado por OpenNavoInclusión en Homebrew 6 feb 2025 16:08

    Adds ARM64 SHA-256 acceleration and fixes macOS unmounting and a wxWidgets assertion; updates translations and Unmount terminology.

    1.26.20 (February 3 rd , 2025): All OSes: Implement SHA-256 acceleration on ARM64 platforms using CPU instructions. Update translations. Replace "Dismount" with "Unmount" across the UI and documentation to align with IT standards. Windows: Fix regression in driver that always allowed defragmentation and caused other side effects. Revert to the previous method of gathering system entropy due to stability issues reported by users. Linux: Fix a regression in Linux Mint affecting administrator password authentication (GH #1473). /usr/bin/true is now used instead of /usr/bin/uptime to detect active sudo sessions. If NOPASSWD used in sudoers with veracrypt and uptime, it should be changed to use /usr/bin/true instead of uptime. macOS: Fix a regression that prevented volume unmounting (GH #1467). Resolve a wxWidgets 3.2.6 assertion error related to the undefined switch use-dummy-sudo-password (GH #1470).

    Scope: The full official notes include platform-specific changes; Windows and Linux changes do not automatically apply to the macOS package.

    Source: https://veracrypt.io/en/Release Notes.html

Interfaz gráfica de código abierto para Homebrew. La instalación se realiza desde el cliente de macOS o con el comando brew.

© 2026 OpenNavo