Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Review and update recommendations regarding secure deletion #563

Open
eloquence opened this issue May 24, 2024 · 0 comments
Open

Review and update recommendations regarding secure deletion #563

eloquence opened this issue May 24, 2024 · 0 comments

Comments

@eloquence
Copy link
Member

Describe the change

We should ensure our recommendations regarding secure deletion make sense for USB/SSD deletion, and that we help journalists mitigate risks with files that could be recovered by an adversary who gains access to a drive and passphrase.

This is especially true for the export device, which holds files in decrypted form (the drive itself is meant to be encrypted; our docs recommend VeraCrypt for this device, as it may be opened on non-Linux machines).

For example, we could recommend a regular drive-level overwrite operation for folks who routinely re-use a single export device -- but we'd need to ensure that such a recommendation actually meaningfully mitigates risk.

How will this impact SecureDrop users?

  • mitigate risk from search & seizures

Additional context

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant