If the above (grand-parent) is the worst tptacek says about encfs, I would argue that you are in decent shape.
This "auditability" seems to me a strength worth nurturing.
[0] Where "by-and-by" refers to the usual superhuman app-sec standards in which "10 hours" translate into actual, meaningful work.
https://defuse.ca/audits/encfs.htm https://defuse.ca/audits/ecryptfs.htm
Truecrypt is a different beast (acts as the basis blob or blockdev for a file system) and has done significantly better on more rigorous audits: https://opencryptoaudit.org/reports/
* CBC - Cipher block chaining: https://en.wikipedia.org/wiki/Cipher_block_chaining#Cipher-b...
* CFB - Cipher feedback: https://en.wikipedia.org/wiki/Block_cipher_modes_of_operatio...
As evinced by the structural similarity of the diagrams in the pages above, the two are very similar; hence tptacek's characterisation of their combination in encfs as "weird", I presume.
* XTS - "XEX-based tweaked-codebook mode with ciphertext stealing": https://en.wikipedia.org/wiki/XEX-TCB-CTS#XEX-based_tweaked-...
I have to more or less hope this is the encryption mode referenced above. NIST recommends an AES cipher to employ with it.
Resolving all acronyms here seems futile (albeit entertaining), thus I will simply rest.
(This is my last unsolicited reply in this thread, I promise.)
Which is begging the question, naturally.
edit: To wit, whether an alternative exists that would satisfy the encfs use case.