facebook rss twitter

Sex, Lies and Hard-Drives

by David Ross on 16 September 2005, 00:00

Quick Link: HEXUS.net/qabso

Add to My Vault: x

Disklabs' Simon Steggles shares with HEXUS an interesting tale of old hard drives giving up a lot of, potentially costly, secrets.

The story

On average, 70% of re-sold hard-drives and memory cards contain pornographic material according to research carried out on 1,000 hard-drives over the course of a year by Disklabs Data Recovery and Computer Forensics.

In addition, the company recently purchased a selection of storage media comprising of 100 hard-disk drives and 50 memory cards and proceeded to process a sample batch to test what data was still retrievable from them. The results were worrying as documents such as CVs and accounting spreadsheets (including names and mobile numbers) were easily accessible.

Perhaps even more worrying was the fact that many previous owners had not deleted temporary Internet files. This means that any new, unscrupulous owner could access personal financial details, such as credit card numbers and could then go on to order goods from Internet pages by simply changing the delivery address. Many of the sampled selection also contained pornographic matter.

It seems that very few people are aware that simply pressing the delete button does not necessarily mean that the data is destroyed and irretrievable. This research comes as a timely reminder to both consumers and businesses that data should be destroyed properly and not simply deleted or formatted, as this is not sufficient to completely erase stored data.

Disklabs have since contacted all of the owners of the hard-drives and memory cards that data was retrieved from to inform them that their old media still contained retrievable data. It must be stressed that all these storage devices have now all been properly wiped by 1st Computer Traders Ltd and the devices are now being used as spare parts for further data recovery tasks sent in to Disklabs Data Recovery and Computer Forensics Services.

Interesting points

  1. The company that we bought the entire product from was eBay.
  2. Most of the traders purchased from didn’t care that the data wasn’t wiped properly – one of them told me just to delete everything and sell it back on eBay!
  3. Don’t trust a trader to wipe any data from your computer. Nearly all the ones that successfully removed data had a common denominator, they were members of the P C Association, and as such were bound by the PCA’s Code of Conduct.
  4. 70% of all Data Recovery jobs have pornography on them. We know this because one of the best ways of checking the integrity of files is by viewing images or movies. If a picture of the seaside has a big black line through the middle of it, it is likely that there is still a corruption etc.
  5. We come across approximately 2 pedophile cases per year. These are immediately passed over to the relevant police authorities.
  6. Mobile phones are now recoverable. Mobile phone SIM/USIM cards and phone bodies are recoverable, and if required, forensic reports can also be produced.
  7. Most of the pornography on Mobile Phones is generally taken by the phone owner themselves, rather than the standard ‘download stuff’.

Moral of the story

If you want your data wiped properly, use an expert, (Disklabs, 1st Computer Traders Ltd or PC Association member). Do not rely on traders who offer to do it for you. We know that about 30% of them wont bother or do a ‘botch job’ of it.

Data is nearly always retrievable. If you need data recovering, simply send it to a specialist, rather than someone who thinks that they are, or says he will have a go first. This will nearly always make the job more difficult for the professionals and most likely more expensive.

Mobile Phones can be recovered from, as can PDA’s and other hand held devices.

Only buy from or trade with members of the PC Association.

Disklabs



HEXUS Forums :: 11 Comments

Login with Forum Account

Don't have an account? Register today!
Interesting read :)

need to wipe my data, or someone will get my coursework ;) lol
mr_anderson187
Interesting read :)

need to wipe my data, or someone will get my coursework ;) lol

i think we all know what coursework that'll be. I allready wipe all the data or physically destroy the drive.
index.dat :)
unrealuniverse
i think we all know what coursework that'll be. I allready wipe all the data or physically destroy the drive.

Phisically destroyed ??? :shocked2: :shocked2: Sounds like your coursework is a top secret stuff :crazy:
Come on chaps don't appear so shocked its not like we never knew that.

I've read a few other articles about card fraud due to the previous owners of hard drives not securely wiping their data…if you ask me, the people who don't wipe their hard drives well they deserve everything they get for being so careless…