Re: hardware disk encryption?

From: atom smasher (ngbz_at_fhfcvpvbhf.bet)
Date: 10/17/04


Date: Sat, 16 Oct 2004 20:49:40 -0400

Paul Rubin wrote:

> For a hard drive, why should you be willing to reveal any info about
> its contents? If you have 100k files and only 2 of them are
> encrypted, doesn't that tell the attacker something? If you have only
> one file on the disk (encrypted) and 98% empty space, doesn't that say
> something too? The attacker may have thought you had 80 GB of data,
> so there's no reason to reveal you only had 1 GB. As one of the
> Goldwasser/Micali papers explained, "a good disguise does not reveal
> the person's height".
>
> If you don't want to reveal info about the contents of a hard drive,
> you have to encrypt the entire drive; there's no way out.
============

this is part of what makes hardware disk encryption so much more appealing
(to me) than software disk encryption... the only thing an attacker could
learn about the contents of a disk is how much stuff there might be.

doing disk encryption in software by the OS leaves a lot of clues.
encrypting files as needed leaves even more clues.



Relevant Pages

  • Vulnerability in encrypted loop device for linux
    ... An attacker is able to modify the content of the encrypted device ... considered a aim of the encryption mode, so most modes (e.g. ECB, CFB, ... As we need to authenticate the device across mounts and not while it is ... It slows down mount operations but they are ...
    (Bugtraq)
  • [UNIX] Vulnerability in Encrypted Loop Device for Linux
    ... Encrypting a disk device aims to protect against an off-line attacker who ... The encryption mode used by encrypted loop device is CBC. ... We propose 2 types of fixes: one that authenticate at mount time (see ...
    (Securiteam)
  • Re: Question about rsync
    ... The most important aspect of security is improving your weakest links - when you are at the stage that the easiest methodof attack is physical, or personal, then your job as IT security is pretty much done. ... It makes sense to take easy steps to increase security if you can - an attacker might not have the same opinion about the easiest methodof attack as you. ... but it contains information about an algorithm aimed precisely at transferring only those parts of a file that have changed. ... So unless you are doing a backup of a nuclear missile design, encryption on an rsync backup will only make a realistic difference if your network topology is such that the traffic is accessible by more people. ...
    (comp.os.linux.networking)
  • Re: Signatures and encryption headers
    ... breached when an attacker can modify the message received? ... But I see how the lack of authentication can cause the receiver to act ... not for the iv or other encryption ... A create a payload, S signs it with public key crypto (most likely ...
    (sci.crypt)
  • Re: How good an encryption algorithm is this?
    ... in the scenario I described. ... which the attacker gets her hands on that data. ... It's the fact that your algorithm makes it fairly easy to deduce the key ... And don't forget that you started by asking "How good an encryption ...
    (microsoft.public.vc.language)

Quantcast