View Full Version : Password protecting a memory stick


gingernut
21st October 2009, 20:34
Is it possible to password protect data (folders or the stick itself) on a memory stick, in case it should fall into enemy hands ??

cheers Ginge



C-N
21st October 2009, 20:46
some memory stick have built in encryption software, like s.a.n.d.i.s.k. for Folder in mswindows, there are utilities like dirlock.

bnt
21st October 2009, 21:37
Have you looked at TrueCrypt (http://www.truecrypt.org/)? It's an Open Source project, which means that there's no cost, and also means that the source code is open to inspection for security holes or backdoors. I haven't tried it myself, though - so far I've only tried native Linux methods (LUKS) with varying degrees of success, but maybe I should, since TrueCrypt works on Linix and Windows.

FN-GM
21st October 2009, 23:25
As said you want to use TrueCrypt.

I work in the IT Department in a college and the software you get with these pendrives is not encryption. If you can use some tools to view the contents easy. With TrueCrypt you cant do that it is encrypted and hard to crack. The only problem with TrueCrypt is that you need to install it on every computer you intend to use the drive on. The good thing its compatible with Mac, Windows & Linux & its 100% free!

I use it and would recommend it.

Mike-Bracknell
21st October 2009, 23:59
TrueCrypt FTW :ok:

Incidentally, you don't need to install it on each PC. You can set it to autorun a non-installable version of itself, which means no mucking about at all.

gingernut
23rd October 2009, 21:22
cheers chaps.

Gertrude the Wombat
23rd October 2009, 22:17
source code is open to inspection for security holes or backdoors
Yeah, right. This crypto stuff is so obscure that even with proper documentation and tech support it's not exactly easy to drive ... nobody but a serious mathematician (which doesn't include me, I gave up after two years at Cambridge) has the remotest chance of validating the source code.

Keef
24th October 2009, 02:23
TrueCrypt works well, and is excellent for the paranoid - you can hide stuff at two levels: one that you give away under duress to MI5 when they are torturing you, and one that you don't reveal.

If you forget and write lots of stuff to the "non-hidden" part of the stick, it can sometimes overwrite the encrypted bit. I've not got that far into it, but a friend of mine lost a load of case notes that way.

If you hide a LOT of stuff on it, MI5 will realise there's more there than you've revealed, but they are not likely to be able to crack it.

I gave up using it because i could never remember the passwords. Writing them on the wall rather defeated the purpose.

Tarq57
24th October 2009, 03:31
Keef, didn't the gentle ministrations of the MI5 interrogators assist with password recall?

Loose rivets
24th October 2009, 06:09
The Fifth of November. Nobody would guess that.

gizmocat
26th October 2009, 17:17
GTW
Quote:
source code is open to inspection for security holes or backdoors
Yeah, right. This crypto stuff is so obscure that even with proper documentation and tech support it's not exactly easy to drive ... nobody but a serious mathematician (which doesn't include me, I gave up after two years at Cambridge) has the remotest chance of validating the source code.


Read the bible Amazon.com: The Codebreakers: The Comprehensive History of Secret Communication from Ancient Times to the Internet (9780684831305): David Kahn: Books (http://www.amazon.com/Codebreakers-Comprehensive-History-Communication-Internet/dp/0684831309)

cessnapuppy
27th October 2009, 19:49
not quite, but close. what he was asking for was 1st hand personal experience: not quite what you get from Google these days.

The key feature they installed on this forum just last year, where people, if they see a post they dont like, can just skip on to a different post/thread has been a tremendous help!