<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body bgcolor="#ffffff" text="#000000">
Hi, Amedee!<br>
<br>
On 21/12/2009 14:36, Amedee Van Gasse (ub) wrote:
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">On Mon, December 21, 2009 10:04, Gilles Gravier wrote:
</pre>
<blockquote type="cite">
<pre wrap="">The problem with these commands, is that you're not really helping...
Forensics tools will read below one or more levels of re-write. You need
to do this several times in a row... and, more importantly, you need to
use special data patterns that will actually make reading shadows of
former data harder if not impossible. There are standards for that. And
they do not involve writing random data or zeros, but actual specific
patterns.
</pre>
</blockquote>
<pre wrap="">
Hi!
Can you name a few of those forensics softwares? + documentation about how
they actually work and what the conditions are to get usable results?
Preferably something recent, not some outdated standards published by the
USA government (I don't trust foreign governments on that subject, I don't
even trust my own government).
</pre>
</blockquote>
The standards are still there, like <i>DoD 5220.22-M (3 passes)...</i>
and more also. See the list on my previous post.<br>
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">Or are you talking about disassembling a hard disk in a dustfree room and
reading the actual magnetic patterns with a scanning probe microscope to
get a palimpsest image of the disk?
</pre>
</blockquote>
That's why you want to have many overwrites... or a full gaussian
demagnetization (there are machines to do that)...<br>
<br>
Of course if you want to re-use your drive... overwrites is the way to
go. Or assured delete.<br>
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">If you're afraid of a casual hacker or even most law enforcement (I have
played a bit with the forensic tools cd of our Federal Computer Crime
Unit), overwriting it 10 times with random data will be more than enough.
</pre>
</blockquote>
Random data is not enough... If you're going random, you might as well
do one pass.<br>
<br>
If you want to benefit from multiple passes, you should use one of the
patterns created for that.<br>
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">It's only when you're afraid of *very* large organisations (intelligence
agencies, multinationals) that procedures with special RLL patterns are
worth the effort. But then again, if your data is really *that* important,
you should physically destroy the disk. Throw it in the blash furnace of a
steel mill.
But that's just my humble opinion...
</pre>
</blockquote>
True.<br>
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">Another argument, if you have 10 KB of sensitive data on a 500 GB drive,
the chances that it will be found are close to zero. The data density is
just too high. And then there is the case of perpendicular recording.
</pre>
</blockquote>
Unless there is clear text in that block that allows a sector search to
find it...<br>
<blockquote
cite="mid:f0c2dda67892be2aec1cc3395cf38a77.squirrel@amedee.be"
type="cite">
<pre wrap="">What about flash memory? To shred data on a NAND memory device you will
need something that is covered by patent WO/2009/009052</pre>
</blockquote>
<br>
Or you use assured delete...<br>
<br>
Gilles.<br>
<br>
<div class="moz-signature">-- <br>
<meta content="text/html; charset=ISO-8859-1" http-equiv="content-type">
<title>Signature Home Chastity</title>
<meta content="Gilles Gravier" name="author">
<span style="color: rgb(0, 0, 0);"></span>
<div style="text-align: left;">
<table
style="text-align: left; background-color: rgb(102, 102, 102); width: 500px; height: 73px;"
border="1" cellpadding="3" cellspacing="3">
<tbody>
<tr>
<td
style="text-align: center; vertical-align: middle; background-color: rgb(204, 204, 204); white-space: nowrap;">
<div
style="text-align: center; background-color: rgb(204, 204, 204);"><tt><font
color="#7d6eaf"><i><b>Gilles Gravier</b></i> <b>=</b> </font><a
href="mailto:Gilles@Gravier.org"><font color="#000000"><b>Gilles@Gravier.org</b></font></a></tt><br>
</div>
<div
style="text-align: center; background-color: rgb(204, 204, 204);"><tt><font
color="#009900"><span
style="font-family: monospace; color: rgb(0, 0, 0); font-weight: bold;"></span></font><font
color="#000099">ICQ :</font> <a
href="http://www.icq.com/whitepages/about_me.php?Uin=77488526"><font
color="#009900"><b>77488526</b></font></a></tt> <tt><font
color="#009900"><b><span
style="font-family: monospace; color: rgb(0, 0, 0);"> || </span></b></font></tt><tt><font
color="#000099">MSN Messenger : <a
href="http://members.msn.com/Gilles@Gravier.org"><span
style="color: rgb(0, 153, 0); font-weight: bold;">Gilles@Gravier.org</span></a></font></tt><tt><font
color="#009900"><b><span
style="font-family: monospace; color: rgb(0, 0, 0);"><br>
</span></b></font></tt><span
style="font-family: monospace; color: rgb(0, 0, 153);">Skype</span><tt><font
color="#000099"><span style="color: rgb(0, 0, 153);"> : </span><a
href="callto://ggravier"><span
style="font-weight: bold; color: rgb(0, 153, 0);">ggravier</span></a></font></tt><tt><font
color="#009900"><b><span
style="font-family: monospace; color: rgb(0, 0, 0);"> || </span></b></font></tt><tt><font
color="#000099"><span style="color: rgb(0, 153, 0);"></span><span
style="font-weight: bold;"></span>Y! : <a
href="http://profiles.yahoo.com/ggravier"><span
style="color: rgb(0, 153, 0); font-weight: bold;">ggravier</span></a></font></tt><tt
style="font-weight: bold;"><font color="#009900"><span
style="font-family: monospace; color: rgb(0, 0, 0);"> || </span></font></tt><tt><font
color="#000099">AOL : <a href="aim:goim?screenname=gillesgravier"><span
style="color: rgb(0, 153, 0); font-weight: bold;">gillesgravier</span></a><br>
</font></tt><tt><font color="#000099">Aka-Aki :</font> <a
href="http://www.aka-aki.com/profiles/view/ggravier"><font
color="#009900"><b>ggravier</b></font></a></tt><tt><font
color="#000099"><span style="color: rgb(0, 0, 153);"> </span></font></tt><tt
style="font-weight: bold;"><font color="#009900"><span
style="font-family: monospace; color: rgb(0, 0, 0);">|| </span> </font></tt><tt><font
color="#000099">PGP Key ID :</font> <a
href="http://pgp.mit.edu:11371/pks/lookup?search=0x8DE6D026&op=index"><font
color="#009900"><b>0x8DE6D026</b></font></a><br>
"<span style="font-style: italic;">Living on Earth is expensive, but it
does include a free trip around the sun.</span>"<br>
</tt> </div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</body>
</html>