Wilders Security Forums  

Go Back   Wilders Security Forums > Privacy Related Topics > privacy software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old May 2nd, 2002, 04:28 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,227
Default Have the disk cleaners forgotten something?

I regularly perform housekeeping on my hard disk - a defrag followed by a D0D level wipe of cluster tips, free space and directory squishes. *By the time the bottle was empty, an alarming thought occurred to me:

Between 1 and 32 passes are usually available, with at least 7 recommended (DoD) to make data completely unrecoverable. *Fine. *But what if I delete a sensitive file and then dl a setup program which overlays the space previously occupied by the deleted file? *That's equivalent to a single pass wipe of the sensitive data.

So does that mean it's potentially recoverable from underneath the setup program? *If so, then programs addressing security wipes need to be ramped up!

Hmm...
__________________
My Novel
  #2  
Old May 2nd, 2002, 10:23 AM
spy1's Avatar
spy1 spy1 is offline
Massive Poster
 
Join Date: Dec 2002
Location: Charlotte, NC
Posts: 3,122
Default Re: Have the disk cleaners forgotten something?

Checkout - Sounds correct. I don't know how the disk cleaner manufacturers would be able to compensate for what's basically an operator error, though.

If you want something gone for good, you should always select 'erase' and not 'delete' from the right-click menu. Pete
__________________
"When fascism comes to America it will come wrapped in the flag and carrying a cross." Sinclair Lewis
  #3  
Old May 2nd, 2002, 10:41 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,227
Default Re: Have the disk cleaners forgotten something?

Well, in future, I'll be well impressed with a security wiper which
  • cleans a free area
  • move undeleted files to that area
  • erases the previously occupied space
  • moves the files back or defrags as it goes
I don't see how a user can be 100% guaranteed of total erasure otherwise.
__________________
My Novel
  #4  
Old May 2nd, 2002, 01:19 PM
eyespy's Avatar
eyespy eyespy is offline
Frequent Poster
 
Join Date: Feb 2002
Location: Oh Canada !!
Posts: 490
Default Re: Have the disk cleaners forgotten something?

Checkout...
* * * * * * * * *I'm not sure I completely understand your question...
* * * * If you wipe a file.... say 7 passes, and install a new file or directory over the space you just wiped, the wiped file could still be recoverable ? Is that your question ?
*Also, is their any reason that you perform a defrag before wiping "unused" disk space ? I usually do a scandisk first, a file wipe second (unused disk space) than a defrag.
* * * * * * * * * * *thanks, bill
__________________
bill

"When you come to a fork in the road....Take it" ("Yogi" Berra )
  #5  
Old May 2nd, 2002, 04:29 PM
Checkout;
 
Posts: n/a
Default Re: Have the disk cleaners forgotten something?

Bill, imagine a situation where you - or perhaps a cleanup program - deletes a file, or a bunch of them. *Running apps create files all the time in the background, and downloading from the net (or just visiting sites) will create new ones too. *The new files can easily occupy space formerly occupied by deleted files.

Consequently, in these circumstances, deleted files have only had a 1-pass wipe. *Are the deleted files then recoverable in part or whole by forensic apparatus?

IOW, I'm suggesting that files can be deleted either deliberately or accidentally or automatically without being DoD wiped first, and replaced by data which you would want to keep.

Have I made it more clear? *Sorry if I haven't.

Edit for a better example

Say you've had a genius idea and you've created a file called patent_application.doc. *After weeks or months of nursing this idea into a presentable format, your other activities mean you need to defrag your hard drive. *Your patent doc is moved elsewhere on the disk. *Defrag doesn't do a security wipe, so the old copy lies in the old position, forensically recoverable. *The defrag moves another file over the top of it, say msconfig.exe (which you ain't going to delete, right?)

Thus your hard disk is tidy, but anyone forensically examing your hard drive may find patent_application.doc lying underneath msconfig.exe. *(All assuming that data can be recovered if only overwritten once, of course.)

I hope that's better!
  #6  
Old May 3rd, 2002, 01:04 AM
eyespy's Avatar
eyespy eyespy is offline
Frequent Poster
 
Join Date: Feb 2002
Location: Oh Canada !!
Posts: 490
Default Re: Have the disk cleaners forgotten something?

Checkout...
* * * * * * * * Ok, now I completely understand your point. It is a valid point I might add.
* *Having said that, what if you did a "wipe" of unused disk space...before the defrag. That would ensure that that deleted files and directories would be "wiped". Than during a defrag, if say msconfig.exe, were to be moved into another area of the hard disk, it would be moved into "wiped" hard disk space. Nothing recoverable underneath.
As for deleting files...wipe all files not needed..recent docs, history, downloads...
*But, I dare say that *in all probability, you wouldn't be able to "wipe" every single transaction off your PC, simply because their are way too many "footprints" left behind at all stages of using a PC !!
* * * * * * * * * * *IMHO...........bill
__________________
bill

"When you come to a fork in the road....Take it" ("Yogi" Berra )
  #7  
Old May 3rd, 2002, 02:03 AM
Phazor
 
Posts: n/a
Default Re: Have the disk cleaners forgotten something?

Can i get a few good recommendations on file wiper programs. Pros/Cons.

Thanks
  #8  
Old May 3rd, 2002, 02:31 AM
Mr.Blaze's Avatar
Mr.Blaze Mr.Blaze is offline
The Newbie Welcome Wagon
 
Join Date: Feb 2003
Location: on the sofa
Posts: 2,842
Default Re: Have the disk cleaners forgotten something?

why check out wipeing hd stuff hm we might be kindered spirits after all he he he but im scared to ask lol
__________________
i am blazes rageing fur ball of fury dont let the small paws fool you my claws retract like wolverin, err when I'm not babysitting Jooskes mouse
  #9  
Old May 3rd, 2002, 05:21 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,227
Default Re: Have the disk cleaners forgotten something?

Bill, you can't guarantee a defrag will use the wiped space - far from it. *Perhaps this is a good product idea for the paranoid (government agencies)?

Blaze, you have an evil, suspicious mind. *I neither admit nor deny anything. *
__________________
My Novel
  #10  
Old May 3rd, 2002, 05:23 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,227
Default Re: Have the disk cleaners forgotten something?

Quote:
Can i get a few good recommendations on file wiper programs. Pros/Cons.

Thanks
I use IEClean, which is good. *I don't know much about the other products in this area, just enough to say don't touch Evidence Eliminator with a barge pole.
__________________
My Novel
  #11  
Old May 3rd, 2002, 08:59 AM
FanJ
 
Posts: n/a
Default Re: Have the disk cleaners forgotten something?

I agree with Checkout.

I also use IEClean and like it very much. It's from the same company PSC that makes the AT BOClean. You will see Nancy from PSC very often in the update-alerts-section giving announcements about new def's for BOClean. The support from PSC is really absolutely first class.

I also agree with Checkout to stay away from Evidence Eliminator!

On the old forum we were also talking about this subject, for example in this thread:
http://pub24.ezboard.com/fsecureyese...picID=28.topic
  #12  
Old May 3rd, 2002, 12:45 PM
eyespy's Avatar
eyespy eyespy is offline
Frequent Poster
 
Join Date: Feb 2002
Location: Oh Canada !!
Posts: 490
Default Re: Have the disk cleaners forgotten something?

Checkout....point taken...thanks !


Phazor...I use Eraser (http://www.wilders.org/free_tools.htm) * to wipe files and unused hard disk space.
As for those dat and temp files, I use Internet Sweeper (check off "wipe" and "run during start up" *in options) . This can be found at the same link as well !!
* * * * * * * * * bill *
__________________
bill

"When you come to a fork in the road....Take it" ("Yogi" Berra )
  #13  
Old May 3rd, 2002, 01:23 PM
spy1's Avatar
spy1 spy1 is offline
Massive Poster
 
Join Date: Dec 2002
Location: Charlotte, NC
Posts: 3,122
Default Re: Have the disk cleaners forgotten something?

Phazor - Ditto the above. And welcome! Pete
__________________
"When fascism comes to America it will come wrapped in the flag and carrying a cross." Sinclair Lewis
 

Wilders Security Forums > Privacy Related Topics > privacy software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -5. The time now is 08:56 PM.


Powered by vBulletin® Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2009, Wilders Security Forums