On TechRepublic: 19 words you don't want in your resume

Search:
Go!




Click Here
advertisement

Security Watch : Don't get burned by viruses and hackers
Ready to recycle that old PC?
Read this first
By Robert Vamosi 
Senior editor, CNET Reviews
April 14, 2006

Throwing out an old computer is complicated. First, there are heavy metals used in most PCs, and you don't want that ending up in the local landfill. Second, there's the data on the hard drive. If you're not careful, it could end up in the hands of data thieves. Whether you're donating that used PC to a local school or selling it on an online auction site, you'll want to remove your personal files first. Here's a quick lesson in how data is stored and what you can do to keep others from reading your e-mail and seeing your financial data from five years ago.

If you consider how many files, saved backups, and temporary files you may have, there's a lot of old data hanging around.
A quick lesson in deleting files
In Windows, whenever a file is deleted, the entry header within a file allocation table is removed, allowing the disk space allotted to become available once again. It's important to note that at this point, no data has been erased or overwritten. In fact, Windows safeguards deleted files; they're sent to the Recycle Bin until the bin is emptied. This second chance can be helpful when you delete an important file by mistake. However, even if the file is "emptied" or erased from the Recycle Bin, it is still possible to "undelete" that file. Software such as Norton SystemWorks can reconstruct the allocation table entry, allowing access to the file once again.

Some applications within Windows litter the hard drive with temporary or intermediate backup files. Thus, when you delete a saved file, you've deleted only the last, final copy--all of the backups and the temp files remain. And when Windows files are first saved, they fill in preset clusters--unless there's a gap (known as slack space) between the end of the file and the preset end of that final cluster. If the end of a new file happens to occur over a previously "erased" cluster, it's possible to read some of the old data within the slack space. Additionally, saved files may also contain random pieces of RAM data, called RAM slack. If you consider how many files, saved backups, and temporary files you may have, there's a lot of slack space on, say, a typical 80GB drive, and therefore there's a lot of old data hanging around.

If you defragment your drive and delete all of the files at a command prompt, then reformat your drive, in theory someone could still come along and recover your data.
I know what you did on your PC last summer
It is truly foolish to think that data on your discarded hard drive can't be read by someone else. A few years ago, M.I.T. graduate students Simson Garfinkel and Abhi Shelat made headlines when they discovered just how vulnerable old hard drives could be. The pair purchased 158 secondhand drives on eBay. Of the 129 drives that were still working, they found thousands of active credit card numbers, along with pharmaceutical records, legal correspondence, corporate memoranda, and, of course, pornography. In addition, 66 of the drives had more than 5 e-mail messages; one had more than 9,500. Only 12 had been properly and thoroughly cleansed of recoverable data.

While few thieves are likely to carry out a recovery effort as extensive as Garfinkel and Shelat's, the point remains: data on your discarded hard drive can be read by someone else. In fact, reading old data isn't always illegal. The U.S. Supreme Court ruled in California vs. Greenwood that discarded materials confer no right to privacy, more or less giving individuals the right to peruse secondhand drives.

Reformatting your drive is not enough
If you think reformatting or defragging the drive will erase the old data, you're wrong. Even if you defragment your drive and delete all of the files at a command prompt, then reformat your drive, in theory someone could still come along and recover your data. And changes made to the Windows XP file system tend to store and lock data in a variety of new ways. In Windows XP, you need either to sign in as Administrator or to obtain permission to delete some files.

To be completely safe, you could physically destroy the drive by smashing it to pieces or drilling holes through it. If that's too extreme, you can demagnetize the drive with a Type I or Type II degauss tool. Or--and this seems the most practical--you could overwrite all of the data with a utility called a disk sanitizer or a data shredder, such as Eraser 5.7, available for free from CNET Download.com.

Apps such as Eraser work by overwriting existing data with random 1s and 0s. You'll want to select the highest number of rewrites possible. The Department of Defense requires only 7 rounds of rewriting from shredding apps, but Eraser allows you to make up to 100 passes. Of course, the more overwrites, the longer it'll take to sanitize a given drive.

Proactive strategies
But why wait until the last minute to safeguard your files and directories. You can use hard drive encryption while the disk is still operational; that way when you discard the drive, the data won't be easy for a common thief to read. Microsoft currently offers Encrypting File System (EFS) within Windows 2000 and Windows XP, while Apple bundles 128-bit AES symmetric encryption within a feature called FileVault within its OS X operating system. Microsoft EFS only encrypts files and folders while Apple's FileVault protects entire directories and even creates a master key in case you forget how to unlock your hard drive. Microsoft will offer entire drive protection with a program called BitLocker, available within the two enterprise business versions of Windows Vista due early next year. Some laptop manufacturers, such as Lenovo, feature built-in drive encryption.

Personally, I recommend physically removing the hard drive and recycling the PC box, the monitor, and the keyboard. Of the five old drives I have kicking around the house, two are paperweights (they're nonoperational). I've installed the three that still work on my new machines as second and third drives, and I use that extra space for storage and backups. When I do decide to remove them, I'll definitely use Erase to sanitize them, but I might also stick a drill bit into them for good measure. You never know who's snooping through your garbage.

What precautions do you take before recycling your old PCs? Talk back to me.



CNET's free newsletters
Rob Vamosi's
award-winning
column on Internet threats and how to counter them 
Delivered Mondays


TalkBack
347 messages

Article discussion: Security Watch: Ready to recycle that old PC? Read this first


Latest post:

"Statistical Risk = Age of Drive"
by retroworks (See profile) - October 9, 2006 9:54 AM PDT
The strongest risk is from a hard drive in use which is stolen (e.g. a laptop). It's useful, and the person using it is a jerk. The next strongest risk is a hard drive which is n... (Read more).
Sort by: Title |
Date
| Most helpful

What you can do

You can buy a externel hard drive case put your C:// drive in it and go to anoth... (Read more)
by landlover890 (See profile) - June 30, 2006 6:13 PM PDT

Scrubbing HDDs

Under all ordinary circumstances a single pass overwrite which makes it impossib... (Read more)
by tsumner (See profile) - May 31, 2006 1:39 PM PDT

Hard Drive, hazardous waste...

It is true that completely destroying your hard drive is the only way to ensure ... (Read more)
by pagerpatrick (See profile) - May 13, 2006 2:37 PM PDT

Destruction seems the best

I have heard many rumors on software that will low level format and data is not ... (Read more)
by comicfan (See profile) - May 11, 2006 4:41 PM PDT
5 out of 5 users found this comment helpful

No Need To Destroy

Each hard drive maker provides a utility to low level format a hard drive. I bel... (Read more)
by r21339 (See profile) - May 9, 2006 6:48 PM PDT
0 out of 5 users found this comment helpful | 2 comments

destroying hard drive

I do not think any program can truly clean off your hard drive. Eventually som... (Read more)
by freebie123 (See profile) - May 8, 2006 1:24 PM PDT
0 out of 5 users found this comment helpful

Data Protection , Encryption - or Destruction

Hi Folks,
This problem of hard drives has two sides! What if YOU want to RECO... (Read more)
by nikl1 (See profile) - May 6, 2006 5:27 PM PDT
5 out of 5 users found this comment helpful

160 GIG HARDDRIVE

I have a 160 gig hard drive in my computer that has to much data on it and when ... (Read more)
by chrismaria01 (See profile) - May 6, 2006 11:20 AM PDT

Recycling Hardrive?

If you are recycling your hardrive contact me by email at lilshortie368@yahoo.co... (Read more)
by coputegeek (See profile) - May 1, 2006 3:59 PM PDT


© 2008 CNET Networks, Inc., a CBS Company. All rights reserved. | Privacy Policy | Terms of Use