Disk Encryption - Security Concerns

Security Concerns

Most full disk encryption schemes are vulnerable to a cold boot attack, whereby encryption keys can be stolen by cold-booting a machine already running an operating system, then dumping the contents of memory before the data disappears. The attack relies on the data remanence property of computer memory, whereby data bits can take up to several minutes to degrade after power has been removed. Even a Trusted Platform Module (TPM) is not effective against the attack, as the operating system needs to hold the decryption keys in memory in order to access the disk.

All software-based encryption systems are vulnerable to various side channel attacks such as acoustic cryptanalysis and hardware keyloggers. In contrast, self-encrypting drives are not vulnerable to these attacks since the hardware encryption key never leaves the disk controller.

Read more about this topic:  Disk Encryption

Famous quotes containing the words security and/or concerns:

    It is hard for those who have never known persecution,
    And who have never known a Christian,
    To believe these tales of Christian persecution.
    It is hard for those who live near a Bank
    To doubt the security of their money.
    —T.S. (Thomas Stearns)

    The idea that nations should love one another, or that business concerns or marketing boards should love one another, or that a man in Portugal should love a man in Peru of whom he has never heard—it is absurd, unreal, dangerous.... The fact is we can only love what we know personally. And we cannot know much.
    —E.M. (Edward Morgan)