14 ms·
How to securely recycle or dispose of your SSD
- cperciva 10y agoOne option they don't mention: Thermite. Seriously, if you physically melt the chips, they're not going to retain any information.
- chinathrow 10y agoIndeed. http://frank.geekheim.de/?p=2423 http://frank.geekheim.de/?p=2423 (German) https://www.youtube.com/watch?v=k-ckechIqW0 https://www.youtube.com/watch?v=k-ckechIqW0
- kijin 10y agoThermite sounds a bit excessive for a typical home or office. How about baking in an oven or roasting on a grill? Is modern flash memory fragile enough to be destroyed irreversibly at 230C/450F?
- phire 10y agoMaybe. They have to be rated to survive those temperatures for short periods of time during reflow soldering. Apparently flash memory is rated to last a minimum of 10 hours baking at 125c, or 360 hours at 85c. The decay is exponential, so in theory 30-60min at 230c should do a lot more damage. But I'm not sure you should rely on it, that 10 hours @ 125c number is for when the bit-errors exceed the capabilities of the ECC. The data will be partially recoverable for much longer. Or you might have some flash which does a lot better than the minimum spec. https://www.eeweb.com/blog/eli_tiomkin/industrial-temperature-and-nand-flash-in-ssd-products https://www.eeweb.com/blog/eli_tiomkin/industrial-temperatur...
- kijin 10y agoHow about microwave? Powerful charges at every exposed terminal looks like a nice way to fry some chips. Maybe submerge the whole PCB in a bowl of salt water to prevent sparks flying everywhere...
- amelius 10y agoSee also [1], for a description of why erasing flash memory can't be done reliably with just "dd". Also, I find it disappointing that the GNU "shred" utility [2] apparently does not work as expected. [1] http://www.noah.org/wiki/Dd_-_Destroyer_of_Disks#caveat_on_Flash_memory_storage http://www.noah.org/wiki/Dd_-_Destroyer_of_Disks#caveat_on_F... [2] https://www.gnu.org/software/coreutils/manual/html_node/shred-invocation.html https://www.gnu.org/software/coreutils/manual/html_node/shre...
- comboy 10y agoI feel stupid now. I can't be the only one who used shred on a journaled FS without giving it some thought. It goes against unix philosophy of a simple tool that only does what it is supposed to do, but some warning from shred that you are using it on FS on which it can't be trusted would be nice.
- amelius 10y ago> Lock It Up and Throw Away the (Encryption) Key That might get you into a lot of legal problems, [1]. [1] https://en.wikipedia.org/wiki/Key_disclosure_law https://en.wikipedia.org/wiki/Key_disclosure_law
- chinathrow 10y agoAs a company depending on your legal requirements, yes. As a private person? I think not so much.
- comboy 10y agoYou mean filling your disk with some random bits? Is white noise already illegal?
- marcosdumay 10y agoYes, in any place where you are forced to disclose encryption keys.
- rwmj 10y agodd if=/dev/urandom of=secret_terror_plan.doc In the UK that command could get you imprisoned indefinitely, especially if you're under suspicion for other reasons.
- jlgaddis 10y agoHell, in the early 90s, C:\Windows> COPY README.TXT A:\VIRUS.EXE (or something very similar), got me permanently kicked out of all computer classes in my high school so I can certainly believe that. Probably even more so in the U.S.
- MertsA 10y agoWell arguably yes. Currently there have been a few cases where judges decided to hold a defendant in contempt of court indefinitely because they claimed to not remember their encryption keys. At least in one of the cases the burden of proof might as well just be if the judge has a hunch. Here's one notable article from almost a year ago but last I checked he's still being held in contempt. https://www.techdirt.com/articles/20160428/07395434297/so-much-fifth-amendment-man-jailed-seven-months-not-turning-over-password.shtml https://www.techdirt.com/articles/20160428/07395434297/so-mu... It's one thing to demand that someone turns over their password but currently AFAIK there's no rigorous proof that the data in question is even encrypted or that the defendant had decrypted it in the past beyond "it was on his computer".
- a-ve 10y agoRelated CCC talk: https://media.ccc.de/v/camp2015-6799-how_to_destroy_a_laptop_with_top_secrets https://media.ccc.de/v/camp2015-6799-how_to_destroy_a_laptop...
- h2hn 10y agoAwesome video. I've watch the video at least 2 times it's great and interesting. :) I cannot recommend all the CCC media highly enough. ;)
- djaychela 10y agoI'm constantly amazed at the waste that happens when people decide they are going to destroy an old (serviceable) hard drive because they want to protect their old data on it. I don't see a need in 99% of cases, when there are perfectly good ways to permanently delete the data and make it unrecoverable, albeit taking a longer time. No doubt I'll get shot to bits for this with various edge cases where it's important that the data is not recoverable, but the environmental cost of people destroying perfectly good drives because they want to upgrade and think that drilling or thermite is the way forward needs to be taken into account. Yes, it's quick to do the drilling, but is it really necessary when a free piece of software will render the same drive usable but without any real chance of access to the data that's on there? We live in an increasingly throwaway society, but I'm certain that we will be viewed with true disgust by future generations when they see how knowingly profligate we have been with the resources we had access to.
- raverbashing 10y agoI agree Unless you're dealing with top-secret material, losing the encryption key is the best way Or just dd around 5x - 50x (or more if you're paranoid) its size to the disk - if you want to further reuse it. No, you won't have a meaningful amount of data remaining on the disk and extracting it requires special software/hardware. Unless you're dealing with data that makes the disk price irrelevant, you can follow this procedure. But if you're in the mood for vulgar displays of power, microwave the board or use a Tesla coil
- devoply 10y agodd 1x-2x is enough in most use cases. most people don't have the time to go rummaging through random hard drive to recover what is mostly garbage. there might be a gem in there, but it's a straw in a haystack.
- falcolas 10y agoPeople have stranger hobbies. I can certainly see the appeal of buying used hard drives just to see what you can recover; part technical challenge, part voyeurism, and part schadenfreude.
- nagvx 10y agoWhy no proper mention of ATA Secure Erase? It's not an Apple feature, it's a low level SSD feature designed for this.
- meddlepal 10y agoYou have to trust it is implemented correctly.
- feelix 10y agowriting random data on it, rather than zeroing it out, will avoid block de-duplication and successfully completely fill it up. Here is a tool written for exactly that (although not intended for securely erasing a drive, it will have that effect too): https://github.com/rentzsch/stressdrive https://github.com/rentzsch/stressdrive
- kalleboo 10y agoDo modern SSDs not contain slack space for garbage collection? How can you guarantee that that also gets cleared out aside from "fill the drive with more data than it will fit and pray"
- nagvx 10y agoExcuse my ignorance, but couldn't a cell that had exceeded its write limit be cycled out for a spare, thus permanently storing a portion of your data in a way unaccessible to any further writes, random-filled or not?
- deleted 10y ago[deleted]
- kalleboo 10y agoThey missed "blend it". Looks pretty effective. https://www.youtube.com/watch?v=1fXGVAadp5k https://www.youtube.com/watch?v=1fXGVAadp5k
- masklinn 10y ago> They missed "blend it". No. > Shred It > Physically destroying the SSD by shredding it into small particles is the absolutely safest, most foolproof method for safe and secure disposal. A blender is just a homebrew variant, the important part is > make sure the shred size is small enough to actually destroy the memory chips on your SSD, however. The shred width should be 1/2 inch or less if you want to make sure the chips get properly mashed up. which a blender doesn't exactly guarantee so you can't use it for "mass" destruction as you'll have to inspect the results and possibly re-blend it until you've ensured sub-half-inch pieces.
- rdl 10y agoBlending (specifically in a dedicated blender jar, not one you ever use for food) is the best way to destroy SD cards I've found, and apparently a major fruit company has done this in the past. It's also a solid excuse to buy a blendtec 800 with sound enclosure for the office -- way quieter than any shredder. And good for making drinks.
- brians 10y agoDon't forget the airtight glove bag. If you can smell the SSD, you're inhaling the SSD.
- masklinn 10y ago> It's also a solid excuse to buy a blendtec 800 with sound enclosure for the office -- way quieter than any shredder. And good for making drinks. Didn't you recommend against drinking electronics dust right at the start of the comment?
- rdl 10y agoYou use a different dedicated jar.
- rdl 10y agoMy policy is: First: 1) use encryption from day one. As long as you can be assured the encryption never failed (somehow repartitioning and writing bare data to the drive), it is a viable option to treat the drive as non-sensitive, depending on what it was used for. Then: 2) use ATA secure erase to wipe it. This command, if you believe it was implemented correctly, should wipe the entire drive, including reserved space. Then: 3a) re-use or re-sell the drives, if you're in a moderate security environment and all of the above have executed correctly. (or send back to a manufacturer if failed in moderate ways which still allow ata secure erase to execute...or if you really trust the disk encryption and it wasn't used for anything sensitive) or 3b) If the security steps above have failed, or if you've screwed up somehow, or if the drive was used in a policy environment which requires or, or if it was used for the most sensitive of data and you need to convince outsiders of security, or if there's any chance the host the drive was attached to was hacked while in operation (in which case the drive security may have been defeated with new formatting or new firmware), physically destroy the drives in rotary disintegrator. You want to do the above even if you plan to shred them because it reduces security risks and requirements while in transit.
- StavrosK 10y agoStep 1.5: Use something that overwrites everything, for good measure. I'd say this is more important than #1, since encryption is more likely to fail than overwriting (I once discovered that my encrypted volume had actually been set up as unencrypted, and I wasn't encrypting the things I thought I was).
- pktgen 10y agoYep, write random data to the entire drive before doing the secure erase. That way, even if the secure erase implementation is completely broken, at least the remaining data should be limited to the spare area of the drive.
- datguacdoh 10y agoFor SSDs, it's easier to ensure that the drive you're buying implements encryption at the controller level because then the secure erase option happens nearly instantaneously. Just look for AES-256 in the drive specs. It happens so quickly because all it does is overwrite the encryption key on the controller as opposed to waiting hours for the standard secure erase procedure to complete. At that point all the data is useless.
- PeterStuer 10y agoWill it Blend - Blending a Solid State Drive (SSD) https://www.youtube.com/watch?v=XHu_EJVZm58 https://www.youtube.com/watch?v=XHu_EJVZm58
- mk3 10y agoWorst case scenario microwave it. It should make the ssd non functional and fry all circuits inside.
- HenryBemis 10y agoI got only 3 words on how to dispose of your SDD: WILL IT BLEND :) ps: I am not affiliated in anyway, I just enjoy watching the guy's videos!
- sborra 10y agoWhat about the chemical option - attacking the board with a strong acid. Are there any readily available acids that would do the trick?
- rwmj 10y agoI immerse my old HDDs and SSDs in full sugar Coke.
- andai 10y agoI know you're probably joking, but would this actually work? I know it dissolves teeth.
- rwmj 10y agoI'm not joking! Full sugar soda is cheap and readily available, it's acidic and it does appear to damage the electronics. In theory at least the sugar should also gum up the innards of HDDs.
- semi-extrinsic 10y agoThere are several more-or-even-more nasty chemicals that will damage PCBs to various extents. But none of those methods should be undertaken without using either a supplied air full-face mask or a proper fume hood, and all of them leave you with the problem of safely disposing of nasty chemicals at the end. Mechanical destruction is cheaper and safer.
- rrggrr 10y agoHere are two machines designed for the task: https://www.alanross.biz/equipment/32778 https://www.alanross.biz/equipment/32778 and https://www.alanross.biz/equipment/33073 https://www.alanross.biz/equipment/33073
- rwmj 10y agoMy go-to method for both hard drives and SSDs is to immerse them for a few days in (full sugar) Coke.
- justinclift 10y agoAny photos of the results for the SSD chips after a few days?
- koliber 10y agoCan someone explain to me how doing a low-level write of all zeroes to the disk is not effective, but rewriting the data in encrypted form is effective? Let's say I have a 100Gb SSD disc and it contains 25Gb of files. If I read in my unencrypted files, encrypt them and write them back to the SSD, they won't necessarily end up in the same physical place as the unencrypted files. Won't the unencrypted files still be there, in unreferenced sectors (do SSD's have sectors?). I would imagine that writing all zeroes at a low level would do a better job of removing data that is already there.
- LogicX 10y agoMy naive understanding is that SSDs have portions of memory that go bad. They then use other, reserved portions of memory. As a result, not all of the memory is exposed for access to the host OS, only the on-drive controller sees the full picture. As a result, you may (at this time) believe youve taken a certsin action, but the reality is that the controller has likely not done what you expect. This is how you may think you've erased everything, but in reality, have not.
- londons_explore 10y agoThe controller stops you accessing some parts of the drive, but it also stops the attacker from reading those same parts. Only a very advanced attacker is likley to be able to read those reserved sectors and be able to reconstruct data from them. I'd say you are safe from everyone except the drive manufacturer, state actors, and people with more than $50k to gain from extracting info.
- crottypeter 10y agoI think the idea is that you never save anything to the disk unencrypted. Zeroing out is not entirely secure because at the hardware level a newly zeroed bit might be distinguishable from a bit that was already zero.
- mbreese 10y agoBuilding on what LogicX said... SSDs have a translation layer that converts the logical read/writes to the physical flash storage. So, low-level writes (from the OS's perspective) won't necessarily line up with what is physically written. I think that in theory if you wrote 5-10X the size of the drive, you might be able to write zeros to each of the flash pages, but I don't think you'd be able to confirm that.
- coretx 10y agoHa! I've been trashing HDD's and USB sticks using old microwave ovens for decennia now. It's so simple. Remove the cover, place the ssd in the middle of the oven and blast your data. Ultra cheap, ultra secure. ( But do take personal security precautions )
- londons_explore 10y agohdds act as a big metal faraday cage, and the actual magnetic media will probably survive. USB sticks the actual flash memory chips have input protection diodes and are quite physically small (limiting the voltage across them), so again I wouldn't be surprised if they survived.
- coretx 10y agoYes, that's why I wrote that you need to remove the _cover_. Regarding flash memory chips the real worry is to not blast them for too much time, not if the data is purged.
- muse900 10y agoSorry but I find that this blog has an error. It says encrypting it and throwing the key away is going to make data unrecoverable. While thats true for now, what happens when tech reaches the point that current encrypted items can be done within milliseconds? So yes while encrypting it will make it so that the person that wants to extract information out of it can't do it with the current tech, but whenever a breakthrough on that field will happen then that person will be able to decrypt the SSD.
- elif 10y ago$1000 to shred an SSD? i bet 20 rounds of 12 gauge for $15 would sufficiently pulverize it. Maybe this wasn't written by an american? What about some kind of acid bath to liquefy the silicon? Or even our old free plasma generator: bonfires? I think there are fun/creative/cheap routes not explored in this article.
- andai 10y agoWhat about microwaving? Would that work?
- justinclift 10y ago> Without having the passphrase or encryption key to recover from, any data on that drive is useless to anyone that finds it. Isn't it widely suspected the TLA's have backdoors to the encryption used SSD makers? eg depending on who you're wanting to keep things private from, using any built in SSD encryption might not be the right approach.
- JoeAltmaier 10y agoShotgun
- kps 10y agoIs TRIM no longer a thing?
- detaro 10y agoTRIM does not guarantee to delete data, it just tells the SSD that it isn't needed anymore (and thus can be deleted or overwritten whenever the SSD wants).
- pasbesoin 10y agoPertaining to this, here are some basic questions I had a hard time finding straightforward answers to, when I last considered built-in SSD encryption a couple of years ago. - Are the AES keys unique per device? - Any guarantee that the manufacturer is not keeping a record of serial numbers / AES keys going out the door? (Assuming sealed manufacturer packaging and trust in same when buying.) - There are some instructions for resetting an AES key after installation. How do I reset an SSD's AES key before installation? Can and how do I use the manufacturer's utility or other means to do so when it is e.g. plugged into an extant system via USB? - Exact descriptions of how the firmware interacts with BIOS (or UFI, I suppose). At the moment, I'm trusting to whole-disk software encryption. Not that I have anything particularly concerning to hide (less than most, probably). I considered using the SSD firmware encryption, but I wore out on chasing down such details. Maybe things have improved in this regard, in the meantime, but a few years ago, I didn't manage to chase down clear descriptions and instructions for these things.