Google Plus

Soon Secure Confidential data on HDD without Encryption on Open source software

Written by anuradha.shukla on . Posted in News

Academics are keen on developing an open source application on Steganography an extremely advanced technique of hiding sensitive data without encryption in plain sight.

This late April news release follows years of work by computer scientists at University of South Califormia, LA and NUST, Islamabad. The research found that sensitive data securing is very easy by simply denying access or controlling the disk location where the sensitive data is stored in the form of clusters.

 

 

The futuristic software will use a predetermined code to store data fragments in independent disk clusters. For viewing these secured files, a reader or the person who is permitted access to it, simply has to use the same application and the file will be reassembled. Presently 20 Megabytes of message can easily be stored on 160-Giga bytes of removable hard drives.

Disk Forensics basic search parameters

Frontier research in Disk Forensics has lead to covert channel securing of confidential data in clusters on the Hard disk itself. Data securing is usually investigated based on two parameters- degree of evasiveness or the ability to resemble non-sensitive or normal data. The second parameter is the capacity or the size/capacity of information hoarding attempted. Most secure data storage methods that strive to introduce techniques that look beyond storage and transmission of data as coded or encrypted formats.

How is encrypted data format compromised?

Quite often, forensic investigators have been able to encrypt content stashed on desktops as well as USB disks by standard investigating tools. Analysis of content storage patterns using sophisticated forensic tools is graphed and investigators extract a contour or boundary called as sample entropy. Encrypted content or data reflects higher entropy in comparison to unencrypted data.

Forensic investigators can then compel owners of the disk or traffic owners to reveal the key codes for decryption. If at one-end soldiers or intelligence personnel could be physically forced into revealing the codes, confidential business data of any enterprise could be legally compelled to reveal decryption codes. This will lead to sensitive data compromise.

Why cluster-formation data storage more secure?

Researchers arrived at this tectonic shift in data security mechanism as covert channelized file system would make data hoarding on mass storage devices or removable/permanent storage devices easy and evasion of disk forensics doubles significantly.

The premise worked upon by scientists here is called plausible denial and by adopting advanced software such as the proposed open source project, it will have a two-fold impregnable plausible deniability possibility.

Researchers have indicated that there is negligible performance downgrade but need to be over ridden in comparison to the content value of the data that is being secured.

This could lead to the development of platform free data protection applications that will allow enterprises as well as personal data information securing possibilities.

{module user9-footer|none}

For questions please refer to our Q/A forum at : http://ask.unixmen.com

Like us on Facebook

This week Top Posts

Write for us

Recent Comments

pigmej

|

Just one thing:

What about pep8 in your python code ? How can you give ‘tutorials’ on quite popular website, of such a bad quality ?

Amit Rai

|

I just renamed shared.xml and it logged in and created a new shared.xml.

DB Griffin

|

Larry Page is not being completely honest! The manner in which the PRISM program/project works does not need access from company administrators or owners, so called “direct access”; the access to the information is already there. These tech company CEOs take for granted the actual intelligence of most end users of their products. All it takes is a little digging and reading to go from ignorant to informed on these things especially on exactly how the internet works/functions in the U.S.A. I find Larry Page’s remarks just as laughable as Al Gore’s claim to “inventing” the internet/world wide web!

If you, as an end user, are reading this post; I challenge you to research these matters yourself. It really is quite simple with all the “information sites” that exist on the web today ie Wikipedia, & other online encyclopedias that actually list source material, as well as highly respected tech sites and blogs that also list their source material. Be warned: this is only the tip of the iceberg and these tech CEOs know and understand this; they are scrambling in attempt to perform DAMAGE CONTROL to save the company and what little trust thay have left from their products end users/consumers.

Am I a skeptic? I believe someone has to be or needs to be at this point in time! If your not just a little skeptical of the government, tech companies, and the people that are in charge of these agencies and companies; you need to be, even if just a little skeptic. For your own personal protection and security! I know I was a part of this community for over 14 years!

Anders Jackson

|

As I understand it so do VLC use same encoders as ffmpeg. And yes, there are less code that can break when you use command line instead of a graphical UI.

And may I ask what mono has to do with VLC? *facepalm*

Anders Jackson

|

Just some thoughts about Java.

OpenJDK7 are now THE Java implementation and Oracles are just one more of the reimplementations. So you should not need to install Oracles version.

And you really don’t need to remove the OpenJDK7 installation to also have Sun Java JDK 7. Just run

sudo update-java-alternatives –list

and select which java you want to have as default java of all that is installed.

And if you want to run a program with one special version, check manpage for java-wrappers how to do that.

man java-wrappers

so you can run java program rasterizer like this:

JAVA_FLAVOR=openjdk rasterizer
JAVA_ARGS=-Xmx80m rasterizer

JAVA_BINDIR=/usr/share/

etc

 
IDG Tech Network
Copyright © 2008-2013 Unixmen.com .
Maintained by Anblik .