有没有符合FBI CIA 标准的删除文件工具?--------虽然ext3下删除文件很难再恢复

仅仅用于软件推荐,不适合发求软件或软件使用问题方面的贴子
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

有没有符合FBI CIA 标准的删除文件工具?--------虽然ext3下删除文件很难再恢复

#1

帖子 skyx » 2007-08-14 16:42

ubuntu早装好了,m$系统和office VC 早就隐藏在vbox中了,总算做好了M$来抄家的一切准备。

做过的-------迟早都要还的-
---------------引自电影《无间道》对白

万事俱备,只欠东风-----------------符合FBI CIA 标准的删除文件工具
no security measure is worth anything if an attacker has physical access to the machine
sxljldh
帖子: 148
注册时间: 2006-07-28 18:19

#2

帖子 sxljldh » 2007-08-14 20:25

为了这个用得着吗?MS不可能跑每个人家里去查吧,至少得有警察出示搜查令

DOS下有一些这样的软件,linux下不清楚。
lisir
帖子: 1187
注册时间: 2006-04-29 14:54
来自: 山东
联系:

#3

帖子 lisir » 2007-08-14 21:01

响应主席号召,积极备荒、备战!
学会看置顶帖、精华帖。
学会使用搜索。
常见问题解答和发帖需知
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#4

帖子 skyx » 2007-08-14 21:03

lisir 写了:响应主席号召,积极备荒、备战!
谢谢支持。

做过的-------迟早都是要还的----------------引自电影《无间道》对白
no security measure is worth anything if an attacker has physical access to the machine
头像
iblicf
帖子: 3766
注册时间: 2007-01-15 17:15

#5

帖子 iblicf » 2007-08-14 21:10

apt-get install wipe
wipe filename
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#6

帖子 skyx » 2007-08-14 21:12

iblicf 写了:apt-get install wipe
wipe filename
有没有FBI CIA 的认证?或者达到了这个标准?
no security measure is worth anything if an attacker has physical access to the machine
头像
iblicf
帖子: 3766
注册时间: 2007-01-15 17:15

#7

帖子 iblicf » 2007-08-14 21:15

死脑筋,FBI给你发认证啊,臭名昭著的FBI 在中国还有fans呢。。。你要事不放心,自己dd 写0 进去
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#8

帖子 skyx » 2007-08-14 21:19

iblicf 写了:死脑筋,FBI给你发认证啊,臭名昭著的FBI 在中国还有fans呢。。。你要事不放心,自己dd 写0 进去
好的,dd o 循环100 次。这个应该可以通过FBI CIA 要求了。
no security measure is worth anything if an attacker has physical access to the machine
头像
vvoody
帖子: 749
注册时间: 2007-01-21 20:10

#9

帖子 vvoody » 2007-08-14 22:38

dd
DD(1) User Commands DD(1)



NAME
dd - convert and copy a file

SYNOPSIS
dd [OPERAND]...
dd OPTION

DESCRIPTION
Copy a file, converting and formatting according to the operands.

bs=BYTES
force ibs=BYTES and obs=BYTES

cbs=BYTES
convert BYTES bytes at a time

conv=CONVS
convert the file as per the comma separated symbol list

count=BLOCKS
copy only BLOCKS input blocks

ibs=BYTES
read BYTES bytes at a time

if=FILE
read from FILE instead of stdin

iflag=FLAGS
read as per the comma separated symbol list

obs=BYTES
write BYTES bytes at a time

of=FILE
write to FILE instead of stdout

oflag=FLAGS
write as per the comma separated symbol list

seek=BLOCKS
skip BLOCKS obs-sized blocks at start of output

skip=BLOCKS
skip BLOCKS ibs-sized blocks at start of input

status=noxfer
suppress transfer statistics

BLOCKS and BYTES may be followed by the following multiplicative suf‐
fixes: xM M, c 1, w 2, b 512, kB 1000, K 1024, MB 1000*1000, M
1024*1024, GB 1000*1000*1000, G 1024*1024*1024, and so on for T, P, E,
Z, Y.

Each CONV symbol may be:

ascii from EBCDIC to ASCII

ebcdic from ASCII to EBCDIC

ibm from ASCII to alternate EBCDIC

block pad newline-terminated records with spaces to cbs-size

unblock
replace trailing spaces in cbs-size records with newline

lcase change upper case to lower case

nocreat
do not create the output file

excl fail if the output file already exists

notrunc
do not truncate the output file

ucase change lower case to upper case

swab swap every pair of input bytes

noerror
continue after read errors

sync pad every input block with NULs to ibs-size; when used with
block or unblock, pad with spaces rather than NULs

fdatasync
physically write output file data before finishing

fsync likewise, but also write metadata

Each FLAG symbol may be:

append append mode (makes sense only for output; conv=notrunc sug‐
gested)

direct use direct I/O for data

directory fail unless a directory dsync use synchronized I/O
for data sync likewise, but also for metadata nonblock use
non-blocking I/O noatime do not update access time noctty
do not assign controlling terminal from file nofollow do not
follow symlinks

Sending a USR1 signal to a running ‘dd’ process makes it print I/O
statistics to standard error and then resume copying.

$ dd if=/dev/zero of=/dev/null& pid=$!
$ kill -USR1 $pid; sleep 1; kill $pid

18335302+0 records in 18335302+0 records out 9387674624 bytes
(9.4 GB) copied, 34.6279 seconds, 271 MB/s

Options are:

--help display this help and exit

--version
output version information and exit

AUTHOR
Written by Paul Rubin, David MacKenzie, and Stuart Kemp.

REPORTING BUGS
Report bugs to <bug-coreutils@gnu.org>.

COPYRIGHT
Copyright © 2007 Free Software Foundation, Inc.
This is free software. You may redistribute copies of it under the
terms of the GNU General Public License
<http://www.gnu.org/licenses/gpl.html>. There is NO WARRANTY, to the
extent permitted by law.

SEE ALSO
The full documentation for dd is maintained as a Texinfo manual. If
the info and dd programs are properly installed at your site, the com‐
mand

info dd

should give you access to the complete manual.



GNU coreutils 6.9 March 2007 DD(1)
biaodianfu
帖子: 12
注册时间: 2007-08-06 12:43

#10

帖子 biaodianfu » 2007-08-14 22:52

上街买个榔头~
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#11

帖子 skyx » 2007-08-14 22:58

biaodianfu 写了:上街买个榔头~

榔头砸后是可以恢复的。

根据磁滞洄记忆效应的原理,IBM数据恢复实验室可以把反复擦写几次的硬盘数据恢复出来。

所以理论上要在钢水中熔掉才行的。
no security measure is worth anything if an attacker has physical access to the machine
头像
millenniumdark
论坛版主
帖子: 4159
注册时间: 2005-07-02 14:41
系统: Ubuntu 14.04 (Kylin)
联系:

#12

帖子 millenniumdark » 2007-08-14 23:06

skyx 写了:
iblicf 写了:死脑筋,FBI给你发认证啊,臭名昭著的FBI 在中国还有fans呢。。。你要事不放心,自己dd 写0 进去
好的,dd o 循环100 次。这个应该可以通过FBI CIA 要求了。
你試過嗎?不知道要花多久?
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#13

帖子 skyx » 2007-10-27 17:14

有人试过没? FBI是否可以再恢复出来?
no security measure is worth anything if an attacker has physical access to the machine
头像
iblicf
帖子: 3766
注册时间: 2007-01-15 17:15

#14

帖子 iblicf » 2007-10-27 17:25

我再教你一个办法,,
sudo chattr +s file_name -->:Secure Delete,让系统在删除这个文件时,使用0填充文件所在的区域。
头像
skyx
论坛版主
帖子: 9202
注册时间: 2006-12-23 13:46
来自: Azores Islands
联系:

#15

帖子 skyx » 2007-10-27 17:31

楼上的方法,理论上来讲,IBM数据恢复实验室还是有办法,因为可以通过当前磁场的方向是可以推段过去某个时刻的方向的。

我的问题是,要置多少次0或1 ,才有效?才能让恢复的成本上档次?
no security measure is worth anything if an attacker has physical access to the machine
回复