Doctors, Lawyers your records secure?? Probably not...

Are you liable??

I have found that many of the professions that use computers and have private client records that need to stay private are violating some very simple rules for taking care of the data on their machines.

If you have client records on a system and you buy and new system what do you do with the old systems HD? Do you delete all your client records? Not good enough. Do you reformat the HD? Depending on how you do it, it may not be good enough. You need to use the right system to make sure the data is wiped from the HD before you get rid of or trade in the system. Your old HD's have data on them that can be retrieved by the wrong person with the right hardware and software. What is you have Credit Card information and other banking information on your HD and you trade it in or sell it to someone? That data goes with it? Yes most of the time.

I recently did an experiment and went to our local flea market. There I found a local computer business that was sellin gold used HD's that they touted as "clean and ready to use". So I bought 10 of them and took them back to my place. I hooked them up and using Forensic Recovery Software and Hardware I was able to recover 7 of the 10 HD's in all their glory. The others all had partial information on them. Some of the information I was able to recover was 349 credit Card numbers with names and expiration dates, 46 bank checking account numbers, and other personal information. One of the HD's appeared to come from a doctors office for obvious reasons. I of course destroyed the data on the HD's afte doing this and have no records of any of the data. This is to protect the privacy of the people whos information was on them.

So before you trade in your computer for a new one, or upgrade drives or such, make sure you have that data properly deleted. Also remember when you send your computer or take your computer to a computer repair place they have access to everything on your computer. Sooo you can guess what that 18 year old tech is doing with your data. :)
7,254 views 3 replies
Reply #1 Top
There is a program called incinerator that rewrites 7 times over the data but the only way to insure that your data is safe is to drill through the drive and then sledgehammer it.
Reply #2 Top
Nah just remove the case top then scratch all over all the surfaces with a magnetic screwdriver. what the scratches didn't get, the magnet will.
Reply #3 Top
I thought this was a serious point on HIPPA or some such and EMR with Data Warehousing.....

You've got a lot more to worry about that sold or stolen drives when it come to Medical records.... shessh...