Home » hard drive » Recent Articles:

Sensitive US Defense Contract Information Surfaces in Ghana

June 26, 2009 Security No Comments

A team of journalists investigating the global electronic waste business has unearthed a security problem too. In a Ghana market, they bought a computer hard drive containing sensitive documents belonging to U.S. government contractor Northrop Grumman.

The drive had belonged to a Fairfax, Virginia, employee who still works for the company and contained “hundreds and hundreds of documents about government contracts,” said Peter Klein, an associate professor with the University of British Columbia, who led the investigation for the Public Broadcasting Service show Frontline. He would not disclose details of the documents, but he said that they were marked “competitive sensitive” and covered company contracts with the Defense Intelligence Agency, the National Aeronautics and Space Administration and the Transportation Security Agency.

The data was unencrypted, Klein said in an interview. The cost? US$40.

Northrop Grumman is not sure how the drive ended up in a Ghana market, but apparently the company had hired an outside vendor to dispose of the PC. “Based on the documents we were shown, we believe this hard drive may have been stolen after one of our asset-disposal vendors took possession of the unit,” the Northrop Grumman said in a statement. “Despite sophisticated safeguards, no company can inoculate itself completely against crime.”

A Northrop Grumman spokesman would not say who was responsible for disposing of the drive, but in its statement the company noted that “the fact that this information is outside our control is disconcerting.”

Some of the documents talked about how to recruit airport screeners and several of them even covered data security practices, Klein said. “It was a wonderful, ironic twist,” Klein said. “Here were these contracts being awarded based on their ability to keep the data safe.”

According to Klein, it’s common for old computers and electronic devices to be improperly dumped in developing countries such as Ghana and China, where locals scavenge the material for components, often under horrific working conditions.

Last year the U.S. Government Accountability Office found that a substantial amount of the country’s e-waste ended up in developing countries, where it was often dangerously disposed of.

The reporters bought seven hard drives, Klein said. The other drives contained sensitive information about their previous owners, including credit-card numbers, resumes and online account information.

Off-camera, sources in Ghana told the reporters that data thieves routinely scour these hard drives for sensitive information, Klein said.

Although that may be worrying to some, security experts say that there is already a vast quantity of this type of information available online from criminals who have stolen it from hacked computers.

Compared to hacking, stealing data from old hard drives is pretty inefficient, said Scott Moulton, an Atlanta data-recovery expert who teaches classes on data recovery. “It’s a tremendous amount of work, so it’s only going to be the bottom-of-the-barrel guys who would do that,” he said. “It’s happening on a small scale.”

Still, it’s easy for criminals to find data on drives, even when they’ve been legitimately wiped clean, Moulton said. He buys used hard drives by the hundreds for his classes. These drives have been professionally wiped, but his students always find at least one drive in each class with information still on it.

That’s because it’s easy for a drive to get missed during the wiping process or improperly wiped. Compounding the problem, the software that some recycling companies use doesn’t actually remove all data from the drive, especially data that may be hidden on corrupted parts of the hard drive known as bad blocks, he explained.

The surest way to get your data off of a hard drive is to physically destroy it, Moulton said.

Extreme Data Recovery Mission Accomplished by NASA

May 13, 2008 Technology No Comments

columbias hard drive

It’s taken four and a half years, but the data recovery specialists charged with extracting data from a cracked, charred 400MB Seagate drive aboard the ill-fated Space Shuttle Columbia have done their duty, retrieving 99% of the information written to the disk. The Columbia burned up on re-entry on Feb. 1, 2003, over Louisiana and Texas. Computerworld reports that the drive was found in a dry lakebed and handed to a team at Kroll Ontrack about six months after the tragedy, but the successful recovery has only just come to light. So, you ask, what was on the drive that was so important?Computerworld reports that the shuttle mission included conducting atmospheric tests:

One of those tests was an experiment for the National Institute of Standards and Technology to determine how xenon gas flows in a zero gravity environment.

Phew, glad they recovered that data. No, seriously, it’s apparently very valuable information. To someone. In fact, researchers just released the data in an academic publication.The drive, already eight years old at the time of the mission, took a beating in the crash, and took another beating during recovery. Stripped down to the platter alone, it was placed in another mechanism and “carefully aligned” with a new motor. As it spun, it sustained more damage, but didn’t crap out before Kroll could get the goods. More gory details, and a lot of great pictures, are over at Computerworld.I know, I know: Why don’t they make the shuttle out of the same material they make the drive? The non-standup-comedian answer is that two other drives on the shuttle were completely unrecoverable, so there’s definitely an element of luck here.

Recent Comments

Tags

Disclosure

Get the Flash Player to see the wordTube Media Player.

Top Security Gear



Nitro-Pak Emergency Preparedness Center

World's Most Secure USB Drive
IronKey 8GB S200 Basic USB 2.0 Flash Drive

Polls

Does the "War" on Drugs Cause More Problems than it Solves?

View Results

Loading ... Loading ...
  • F-35 Cockpit
    f35 lcd


    Artificial Life in Sight
    Toxic waste


    Stacked Computer Chips Get Water Cooled
    water cooled cpu


    IED: Improvised Explosive Devices
    ied map


    Defense Spending Out of Control!
    random image