Full Disk Encryption Hard For Law Enforcement To Crack
If you'd rather keep your data private, take heart: disk encryption is a lot harder to break than techno-thriller movies and TV shows make it out to be, to the chagrin of some branches of law enforcement.
MrSeb writes with word of a paper titled "The growing impact of full disk encryption on digital forensics" [abstract here to paywalled article] that illustrates just how difficult it is. According to the paper, co-authored by a member of US-CERT, "[T]here are three main problems with full disk encryption (FDE): First, evidence-gathering goons can turn off the computer (for transportation) without realizing it's encrypted, and thus can't get back at the data (unless the arrestee gives up his password, which he doesn't have to do); second, if the analysis team doesn't know that the disk is encrypted, it can waste hours trying to read something that's ultimately unreadable; and finally, in the case of hardware-level disk encryption, tampering with the device can trigger self-destruction of the data. The paper does go on to suggest some ways to ameliorate these issues, but ultimately the researchers aren't hopeful: 'Research is needed to develop new techniques and technology for breaking or bypassing full disk encryption.'"
well we [the industry] will be just happy selling encryption with the tagline: so secure - no one can break it - except your average McForensic dude with a software package you can torrent. See, secure!
CS majors know the time/space tradeoff, but they never get taught the 3rd, crucial, tradeoff of the set: comprehension!
http://imgs.xkcd.com/comics/security.png
Why are other peoples sig's always more witty ???
Except he doesn't have to.
He can be punished for not doing it, but there's no law of physics that FORCES him to give up the password.
Hence why spies have cyanide pills and such - such that it then becomes impossible for them to even give up the password.
if you are 'innocent' why do you encrypt your data in the first place?
Wow. Did a stick figure run over your dog or something?
You are in violation of the laws forbidding the manufacture, sale and possession of chilled prawnography.
You use password #1, but if arrested you give up password #2.
Wow. Did a stick figure run over your dog or something?
No, his girlfriend left him for a stick figure. She wanted to try a bigger penis.