Featured Worklog

Price Search



PC Apex Sponsor


PC Apex Sponsors



PC Apex RSS Feeds

RSS Feed for PC Apex Reviews & ArticlesRSS Feed for PC Apex PC Modding WorklogsRSS Feed for the PC Apex Daily DisturbanceRSS Feed for the latest PC Apex Site NewsRSS Feed for PC Apex Affiliate and Web NewsRSS Feed for PC Apex Deals and Steals

Go Back   Apex Community Forums // PC Apex Forums // PC Apex Troubleshooting // Other Hardware

Other Hardware Hardware that doesn't fall into the other categories.

Reply
 
LinkBack Thread Tools Display Modes
Old 30-September-04, 11:25 AM   #1 (permalink)
'Da Doctor of Funk
FunkyFresh's Avatar
Question How good is the DOS "format" command?

I'm doing a report on my company's privacy practices for HIPAA. This covers secure transmission of data, data disposal, etc. One of the questions I have to answer is, "What about old PC's we sell or give away -- is sensitive data recoverable?" Right now, our hardware guy does a DOS fdisk and format on the drives before the PC leaves.

I know, there's no way to REALLY destroy the data without thermite. But I've heard of 14-year-olds with a basic knowledge of Linux being able to recover things from "wiped" hard drives. I'm not looking to defend against the NSA here, just against the casual hacker-wannabe.

So, is "format" good enough, or should I get some utility like Mutilate File Wiper? (BTW, the hardware guy is really hoping I don't make more work for him )
FunkyFresh is offline     Reply With Quote
Old 30-September-04, 11:33 AM   #2 (permalink)
Apex Tech God
Enko's Avatar
Default

the best way i've heard of destroying sensitive data is getting the drive scrubbed and then rewritten with random trash a few times
Enko is offline     Reply With Quote
Old 30-September-04, 11:45 AM   #3 (permalink)
Etiquette & English Gentleman
Default

I'm trying to think of a cogent paradigm to illustrate how little fdisk & format do to wipe data ... think of your HD as an exercise book, and there's a rigid taboo about only ever using the uppermost side of each page . Fdisk & a format are the equivalent or turning the book over & around, so all the uppermost pages are blank ... but none of the information has been removed.

Did that work? If not, perhaps FDisk? Secure? will?

edit - use BCWipe
Jonny English is offline     Reply With Quote
Old 30-September-04, 01:23 PM   #4 (permalink)
Mutant Moderator
FeRaL's Avatar
Default

What Johnny said. Though a 15 lb sledge and a bucket of salt watter work wonders too! Also great for stress relief.
FeRaL is offline     Reply With Quote
Old 30-September-04, 01:32 PM   #5 (permalink)
Freck-hoe-d
Red02's Avatar
Default

Quote:
Originally Posted by FeRaL
What Johnny said. Though a 15 lb sledge and a bucket of salt watter work wonders too! Also great for stress relief.

I'm with you on this one FeRaL, noting beats a 15lb sledge and some good heavy metal to "rock out to".
Red02 is offline     Reply With Quote
Old 30-September-04, 01:41 PM   #6 (permalink)
'Da Doctor of Funk
FunkyFresh's Avatar
Default

I couldn't remember if format merely erased the record of the files, or wiped the data itself. Thanks for confirming what I suspected.
FunkyFresh is offline     Reply With Quote
Old 30-September-04, 02:03 PM   #7 (permalink)
Apex Tech God
Cyno01's Avatar
Default

Doesn't HIPAA have very strict standards for data destruction as a mater of policy in the first place?
Cyno01 is offline     Reply With Quote
Old 30-September-04, 02:08 PM   #8 (permalink)
Rob
Advocatus Diaboli
Rob's Avatar
Default

Running them through an electronic magnet should do the trick, too.

If you're looking for programs, try BCWipe. I've run a few tests myself on the effectiveness of the program and the most I've been able to recover is like 64K of total gibberish.

Rob
Rob is offline     Reply With Quote
Old 30-September-04, 02:19 PM   #9 (permalink)
'Da Doctor of Funk
FunkyFresh's Avatar
Default

Quote:
Originally Posted by Cyno01
Doesn't HIPAA have very strict standards for data destruction as a mater of policy in the first place?

Here's what HIPAA says about it:
Section 164.310, Physical Safeguards
(d) Standard: Device and Media Controls
(2) Implementation Specifics
(i) Disposal (Required).
Implement policies and procedures to address the final disposition of electronic protected health information, and/or the hardware or electronic media on which it is stored.
Strict, but not real specific. From everything I'm finding out, we're going to be using something more heavy-duty to wipe out any PHI data (like BCWipe -- thanks guys!).
FunkyFresh is offline     Reply With Quote
Old 30-September-04, 06:23 PM   #10 (permalink)
Sir Knight of Spamalot
Nerdz's Avatar
Default

Id say u just get the torx screwdriver set and take the thing apart and hang em on the wall..heh or just take the sliver platter out in the middle and put finger prints (or oil all over it).

Dremel works nicely to..well die grinder (the heavy duty dremel)
Nerdz is offline     Reply With Quote
Old 03-October-04, 04:02 PM   #11 (permalink)
Apex Tech God
nev_payne's Avatar
Default

the dos format is as JE says, its a rubber that doesnt rub out properly, or when you press hard onto a pad of paper, you destroy the 1st copy, but the imprint remains on the pad..about 5 pages thick. There are 2 good ways of clearing data. One is as sugested, rewrite the entire hard drive so its packed with data, scrub it, then start again. The original data will be quite hard to recover in this state, as hard drives cant keep a history on whats been put on them, especially as its been writen ovr a few times.

Next ofcourse is our beloved rotary sander and angel grinder...that or a steel furnace, unless ofcourse you want to keep the hard drive.
Dos is useless for completly scrubbing a drive. Its good for any PCbuilders when they need a quick system reinstall on a pre XP machine, but apart form that...theres not many other advantages (execpt it doesnt crash like windows)
nev_payne is offline     Reply With Quote
Old 03-October-04, 05:31 PM   #12 (permalink)
Etiquette & English Gentleman
Default

Quote:
Originally Posted by nev_payne
... rubber ...

Hur-hur! Nev said "rubber"

Translation = eraser
Jonny English is offline     Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Anandtech // Abit AW9D-MAX: When "Beta" MAX is a good thing Gizmo Anandtech RSS 0 08-September-06 03:00 AM
Ars Technica // Cable and phone companies call Net neutrality "silly," "mumbo jumbo" Gizmo Ars Technica RSS 0 07-September-06 11:01 PM
Ars Technica // The meaning of "Vista Capable": good, not great Gizmo Ars Technica RSS 0 05-April-06 11:39 PM
Ars Technica // "ODF Alliance" formed to support OpenDocument format Gizmo Ars Technica RSS 0 04-March-06 01:02 AM


All times are GMT -5. The time now is 04:57 PM.


Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.0
Copyright PCApex.com, GameApex.com, ForumApex.com 2001 - 2008
Advertisements

Page generated in 0.21849 seconds with 9 queries