Hacker News new | ask | show | jobs
by contingencies 4040 days ago
Except that erasure on modern drives rarely actually erases things...
1 comments

Hence it is advisable to store the encryption key somewhere where erasure was properly accounted for during design, e.G. a TPM (trusted platform module).