Full Disclosure mailing list archives
Re: Stealthier Internet access
From: Marsh Ray <marsh () extendedsubset com>
Date: Tue, 25 May 2010 17:45:33 -0500
On 5/25/2010 5:01 PM, Valdis.Kletnieks () vt edu wrote:
It's not worth worrying about wiping the remapped sectors on a disk - even an older 40G drive has some 80 million sectors on it - so even if you have a few hundred sectors that have remapped due to I/O errors, it's still literally a one-in-a-million shot that anything incriminating is in the sector.
Not if the entire drive has been filled with confidential data, e.g., a medical records server. You could end up with quite a few names and SSNs in those few hundred bad sectors. Probably enough to trigger the reporting obligations of a "data breach" if you're under that kind of regulations. You might not even have control of the drive any more so in the worst case you end up having to notify to everyone who could have ended up on the drive, wiped or not. Now that's what I call a bad sector!
Plus it's a *bad* sector, so reading and recovering the data is a bitch...
Or it could be trivial with the right software and/or simple hardware. - Marsh _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Stealthier Internet access Bipin Gautam (May 25)
- Re: Stealthier Internet access Valdis . Kletnieks (May 25)
- Re: Stealthier Internet access Christian Sciberras (May 25)
- Re: Stealthier Internet access Christian Sciberras (May 25)
- Re: Stealthier Internet access Bipin Gautam (May 25)
- Re: Stealthier Internet access Valdis . Kletnieks (May 25)
- Re: Stealthier Internet access BMF (May 25)
- Re: Stealthier Internet access Marsh Ray (May 25)
- Re: Stealthier Internet access Bipin Gautam (May 25)
- Re: Stealthier Internet access Valdis . Kletnieks (May 25)
- Re: Stealthier Internet access T Biehn (May 31)
- Re: Stealthier Internet access Christian Sciberras (May 25)
- Re: Stealthier Internet access Valdis . Kletnieks (May 25)
- <Possible follow-ups>
- Re: Stealthier Internet access Elazar Broad (May 25)