Ein gesundes Sicherheitsbewusstsein

Ich las gerade in der Manpage von “wipe“:

Be aware that harddisks are quite intelligent beasts those days. They transparently remap defective blocks. This means that the disk can keep an albeit corrupted (maybe slightly) but inaccessible and unerasable copy of some of your data. Modern disks are said to have about 100% transparent remapping capacity. You can have a look at recent discussions on Slashdot.

I hereby speculate that harddisks can use the spare remapping area to secretly make copies of your data. Rising totalitarianism makes this almost a certitude. It is quite straightforward to implement some simple filtering schemes that would copy potentially interesting data. Better, a harddisk can probably detect that a given file is being wiped, and silently make a copy of it, while wiping the original as instructed.

Recovering such data is probably easily done with secret IDE/SCSI commands. My guess is that there are agreements between harddisk manufacturers and government agencies. Well-funded mafia hackers should then be able to find those secret commands too.

Don’t trust your harddisk. Encrypt all your data.

Of course this shifts the trust to the computing system, the CPU, and so on. I guess there are also “traps” in the CPU and, in fact, in every sufficiently advanced mass-marketed chip. Wealthy nations can find those. Therefore these are mainly used for criminal investigation and “control of public dissent”.

People should better think of their computing devices as facilities lended by the DHS.

(veröffentlicht unter der GFDL)

So langsam stellt sich mir die Frage, ob die Benutzung eines Computers, den ich nicht eigenhändig zusammengelötet habe (aus Transistoren, Dioden und Widerständen, denn ICs sind korrumpierbar), nicht vollkommen verantwortungslos ist. Ich werde darüber nachdenken!


No Comments Posted in Allgemein

Leave a Reply

Please leave these two fields as-is:

Protected by Invisible Defender. Showed 403 to 331,237 bad guys.

Gravatars akzeptiert.

XHTML: These are some of the tags you can use: <a href=""> <b> <blockquote> <code> <em> <i> <strike> <strong>