Select your language

Security tip 2: How to protect confidential information on a pen drive

The current capabilities of USB memory devices, whether pen drives or removable disks, enhance their use both as an expansion of the internal storage capacities of desktops (and especially laptops and netbooks) and backup drives.

However, we must bear in mind that there are very few devices that incorporate security measures (such as file encryption) that allow protecting confidential information stored in them.

The devices that incorporate it use standard encryption protocols to encrypt files or folders, through the use of a password or even through the use of biometric identification (fingerprint).


These devices are not well known and have a higher price than the rest so their use is very reduced.

How then can we protect confidential information about a pendrive or disk that does not incorporate this feature?

The solution is to encrypt each of the files classified as confidential before storing them on the device using programs based on either symmetric cryptography or private/public key.

- Publicidad -

For this we can follow two approaches:

1. Individual File Encryption


For the first option (encrypt each file separately), we can use any encryption program such as AXCRYPT (http://www.axantum.com/axcrypt/Default.aspx) that once installed on our computer or executed from the pendrive itself (with the version "Axcrypt2Go") will allow us to individually encrypt each file, once entered the password that will allow its subsequent decryption.

To decrypt the file we proceed in a similar way but placing ourselves on the encrypted file (with the extension .axx) and selecting the "Decrypt" option.

2. Create a protected volume.


The second option is more comfortable and agile, since instead of having to encrypt / decrypt each file one by one, it is about creating a space on the pendrive where we will store all the files that we want to keep protected.

In this way in the same pendrive we can establish two zones, one "free" on which we will record files that do not require security and that can be accessible by any user and the other "encrypted" accessible by password in which we will store the confidential files.

To create this protected space on a pendrive that does not incorporate this function we can use a program such as TRUECRYPT (http://www.truecrypt.org/) also available in installable or "portable" version.

For greater flexibility we will show the way to work with the portable version that we will have copied on the same pendrive.

1. Start the truecrypt program.exe from the pendrive and create the volume that will contain the confidential files.

- Publicidad -

Click on the "Create Volume" option accepting the options presented by default until we reach the "Volume Location" screen where we will indicate how we are going to call the file.

Click on "Select File" and move to the disk drive of the pendrive writing the name of a file (in the example "tcdata") that will act as a volume to later include the files to be protected.

After clicking on save, the next two screens confirm the path of the file, and the encryption algorithm to be used (default AES), then requesting the size of the pendrive that we need to reserve for this volume.


In our case we select 10MB and then we are asked for the password to be able to mount the encrypted volume and subsequently access the data contained in it.

This is where we must be especially careful in selecting a long, complex and unpredictable password, since it will be the only barrier to prevent access to the data stored on the volume. (Truecrypt recommends us to use a password of no less than 20 characters!)

Finally we proceed to the formatting of the encrypted volume (the 10 Mb file named tcdata in our example, Not of the entire Pendrive!)


We will check its creation on the pendrive before proceeding to its "assembly".
 2. Mount the volume to save and access the confidential files.

From this moment, in order to store confidential information (or subsequently access it) we must proceed to "mount" the volume.

To do this from the Truecrypt menu we first select the disk drive letter with which we want to access the volume (virtual disk) for example the P: and locate the file (tcdata) from the "Select File" option

By clicking later on the "Mount" option we are asked for the password to "mount" the volume.
After entering successfully, the volume is accessible from the selected virtual disk drive (in the P: example) on which we can work in the same way as we would with another disk (creating files, folders, deleting, renaming ...)

- Publicidad -

From this moment everything we leave on the Virtual Disk Drive P: will be encrypted When disassembling the volume! (with the "Dismount" option) and will only be accessible when the volume (the "tcdata" file) is mounted again once the password has been correctly entered.


You can see how access to the pendrive itself is done from its own disk drive (in example F:) and how the virtual disk P: appears or disappears depending on whether the truecrypt (tcdata) volume is mounted or unmounted.


Author: Juan Carlos Rodriguez - Responsible S21sec university
Source: S21sec

See original.

No comments

• If you're already registered, please log in first. Your email will not be published.

Comments are closed

The comments for this content are closed.

Security becomes a technological platform

Security becomes a technological platform

Mexico. Security is moving from a set of standalone systems to an integrated technology platform that combines artificial intelligence, video analytics, sensors, access control, and data platforms....

Security industry in Mexico and Latin America continues its expansion and professionalization

Security industry in Mexico and Latin America continues its expansion and professionalization

International. The security industry in Mexico and Latin America maintains a growth trend driven by digital transformation, the increase in physical and cyber risks, as well as the need to protect...

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

United States. Veeam Software today announced the launch of Agent Commander, a solution aimed at helping organizations detect risks associated with artificial intelligence, protect AI-based systems...

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

In industries where every minute counts, efficient asset and resource management has become a strategic factor to ensure operational continuity, safety, and productivity. By: Héctor Meléndez,...

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Puerto Rico. A centralized monitoring operation developed by Genesis Security was able to significantly reduce the volume of false alarms in its security systems, thanks to the integration of...

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Türkiye. An open-ocean fish farming farm in Turkey implemented a smart surveillance system based on Dahua solar cameras, thermal monitoring, and wireless data transmission to improve safety and...

 The Hidden Security Gap in Data Centers

The Hidden Security Gap in Data Centers

Imagine the journey of an authorized technician inside a data center. When he arrives, he presents his credential and enters the premises, and before entering the server corridor he needs a key to...

Digital fraud increased at Christmas

Digital fraud increased at Christmas

Colombia. During the holiday season, as e-commerce and digital transactions intensified, online fraud attempts also increased. Fake promotions, impersonation of businesses and messages that...

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Mexico. Milestone Systems, a leading provider of open platform video management software (VMS), hosted the Milestone XPerience Days Mexico 2025 event, a gathering that brought together industry...

Hikvision Mexico launches the third edition of

Hikvision Mexico launches the third edition of "Hikvision Women"

Mexico. Hikvision Mexico announced the launch of the third edition of its "Hikvision Women" program, an initiative aimed at strengthening the participation and professional development of women in...

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter