Backing up SIM cards and making copies of your contacts and SMS is the first thing you'd want to do if a SIM reader got into your hands.
However, there may be cases in which destroying data is more important than keeping them. In such cases it becomes a good idea to clear SIM card memory in order to prevent private information from getting into wrong hands. Here are a few examples:
In these circumstances, you should erase SIM card data before giving the card to anyone. This includes wiping SIM contacts, the SMS archive, the list of last dialled numbers, own numbers stored on the SIM card.
To clear SIM card memory, you have to manually go through each entry and delete it. This is a long and boring operation; besides that - there is a risk that you will accidentally miss some of the entries - simply because there are hundreds of records, and a monotonous operation that involves pressing buttons on a tiny key-pad of a mobile phone is error prone.
There is another risk - some phones do not delete the SMS, making deleted SMS recovery possible. So, when clearing a SIM card, the objectives are:
The solution to this problem is SIM Manager's Clear SIM card feature, it does all of the above in a few clicks.
Besides that, with SIM Manager you can backup SIM cards before erasing them, thus you get to keep a copy of all the sensitive information from the SIM's memory.
Take a look at this video tutorial, which describes how to clear SIM card data without leaving a trace.
Note: The download link is obsolete, copy the final release version instead
A new version of Secrets Keeper is about to be released. It will be called Keeper. You can download a preview from this address: http://files.dekart.com/beta/Keeper-nohands.zip
An installer is not yet available, but we're working on it. At this point just unzip it. Run the included BAT file to enable the integration into MS Office and Windows Explorer.
Of course, no story is complete without screenshots, so here we go (screenshots are clickable):
Keeper's main window, nothing special in it, but notice that the main menu is not shown by default.
The key management window enables you to manage the passwords and contacts stored on your keys. Keeper will generate passwords for you, as well as evaluate their strength. You can have an unlimited number of groups and contacts in each group.
The email addresses will be used when you click the "encrypt and email" option.
The file encryption dialog. You can choose whether you wish to use a password from a key connected to the system (otherwise type it by hand). If you use a password from the key, you can choose which group to encrypt the data for.

The settings window looks like any other settings window.
Note that the update checking feature does not work yet, therefore if you wish to track Keeper's progress, check this page every now and then.

Keeper integrates itself into the Microsoft Office suite, enabling you to encrypt files or decrypt them from within Word, or other programs from Office.

Keeper 4 also integrates itself into the context (right-click) menu of Windows Explorer. This gives you quick access to features such as:
If you right-click an encrypted archive, you will see options such as:
As you can see, Keeper 4 is a huge step forward from Secrets Keeper 3.5. The new version is prettier, it provides an excellent user experience, and it will run on platforms other than Windows ;-)
So, you and your employer are not on good terms anymore and you think it is payback time? Here is a beginner's guide to expressing disagreement.
Disclaimer: the article does not focus on the moral and legal side of the issue, the focus is purely technical.
Note: a complementary article for employers will follow shortly, but if you're sharp enough you can derive the protection methods from this information.
The options are different, but if you're in the IT industry, the common choices are:
Change all the passwords
It is a matter of time before they find a new person who knows how to apply the password reset procedure - most (if not all) systems have one. Sometimes it is as easy as reading the manual (which they should've told you to write in the first place) and following the instructions.
As an IT expert, you are aware of the fact that if someone has full physical access to a system - they can override pretty much every security measure.
Cons:
Pros:
Delete all the data
This is a better approach, because in this case there is nothing to recover. They can have the passwords for every server, the key for every door - but there is nothing to be found behind any of the doors.
Cons:
Pros:
Encrypt all the data
This is an extension of the previous method, and it is psychologically more aggressive, because this time they know they have the files, and "all they need" is the password. This gives them the false feeling that they're almost there.
Cons:
Pros:
Apply subtle changes to the systems configurations, etc.
If you need an example of this, remember the movie "Office space" to get an idea about how this is done.
Cons:
Pros:
Share corporate secrets with the competition
If you are not bound by an NDA, they won't be able to use this against you.
Cons:
Pros:
Final thoughts
All the methods above have one thing in common - you'll have to pay for it sooner or later, and there is no approach that enables you to get away scot-free.
I do not encourage employees to cheat their employers (and vice-versa), I consider that a direct dialogue is the best way to solve a problem, as well as to prevent it from happening in the first place. This article must not to be used as legal advice.
Recent comments