IP Library Granted Patent US 9,411,513
Granted Patent B2
US 9,411,513 · App. 14/272,877 · Granted Aug 9, 2016

Sensitive data file attribute

Inventor: Kung Y. Lin (Irvine, CA)
Assignee: Unisys Corporation
G06F3/06G06F3/0608G06F3/0623G06F3/0652G06F3/0676G06F2003/0692
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,411,513
App. No.
14/272,877
Granted
Aug 9, 2016
Kind
B2
Abstract

Data on a storage device may be marked as sensitive data and this marked sensitive automatically destroyed (e.g., scrubbed) upon erasure. For example, when sensitive data is erased, new data may be immediately written over the erased sensitive data. To destroy the erased data, random characters and/or a fixed sequence of characters may be written over the erased data. The storage device, the operating system, and/or other software may share tasks related to tracking and scrubbing sensitive data. Scrubbing may include writing a fixed sequence, such as zeroes, or writing random characters of data.

Claims (45)

1. A method, comprising:

receiving an instruction to delete data from a storage device, wherein the data occupies a portion of the storage device;

changing use bits that correspond to the data from in-use status to not-in-use status, wherein one use bit corresponds to one data bit;

determining whether the data is marked as sensitive data in sensitive data bits, wherein one sensitive data bit corresponds to one data bit; and

when the data is marked as sensitive data, scrubbing the portion of the storage device.

2. The method of claim 1 , further comprising preventing access to the portion of the storage device until after the portion is scrubbed.

3. The method of claim 1 , further comprising, when the data is marked as sensitive data, determining a scrubbing method for scrubbing the portion of the storage device.

4. The method of claim 1 , wherein the step of scrubbing the portion comprises writing binary zeroes to the portion of the storage device.

5. The method of claim 1 , wherein the step of scrubbing the portion comprises:

during a first pass, writing a random character to the portion of the storage device;

during a second pass, writing a complement of the random character to the portion of the storage device; and

during a third pass, writing a second random character to the portion of the storage device.

6. The method of claim 5 , further comprising during a fourth pass, reading the portion of the storage device to verify the second random character is stored in the portion of the storage device.

7. The method of claim 1 , wherein the data comprises a file and a wherein the storage device comprises a disk drive.

8. A computer program product, comprising:

a non-transitory computer readable medium comprising code to perform the steps of:

receiving an instruction to delete data from a storage device, wherein the data occupies a portion of the storage device;

changing use bits that correspond to the data from in-use status to not-in-use status, wherein one use bit corresponds to one data bit;

determining whether the data is marked as sensitive data in sensitive data bits, wherein one sensitive data bit corresponds to one data bit; and

when the data is marked as sensitive data, scrubbing the portion of the storage device.

9. The computer program product of claim 8 , wherein the medium further comprises code to perform the step of preventing access to the portion of the storage device until after the portion is scrubbed.

10. The computer program product of claim 8 , wherein the medium further comprises code to perform the step of, when the data is marked as sensitive data, determining a scrubbing method for scrubbing the portion of the storage device.

11. The computer program product of claim 8 , wherein the step of scrubbing the portion comprises writing binary zeroes to the portion of the storage device.

12. The computer program product of claim 8 , wherein the step of scrubbing the portion comprises:

during a first pass, writing a random character to the portion of the storage device;

during a second pass, writing a complement of the random character to the portion of the storage device; and

during a third pass, writing a second random character to the portion of the storage device.

13. The computer program product of claim 12 , wherein the medium further comprises code to perform the step of, during a fourth pass, reading the portion of the storage device to verify the second random character is stored in the portion of the storage device.

14. The computer program product of claim 8 , wherein the data comprises a file and a wherein the storage device comprises a disk drive.

15. An apparatus, comprising:

a memory;

a storage device; and

a processor coupled to the memory and the storage device, wherein the processor is configured to execute the steps of:

receiving an instruction to delete data from the storage device, wherein the data occupies a portion of the storage device;

changing use bits that correspond to the data from in-use status to not-in-use status, wherein one use bit corresponds to one data bit;

determining whether the data is marked as sensitive data in sensitive data bits, wherein one sensitive data bit corresponds to one data bit; and

when the data is marked as sensitive data, scrubbing the portion of the storage device.

16. The apparatus of claim 15 , wherein the processor is further configured to perform the step of preventing access to the portion of the storage device until after the portion is scrubbed.

17. The apparatus of claim 15 , wherein the processor is further configured to perform the step of, when the data is marked as sensitive data, determining a scrubbing method for scrubbing the portion of the storage device.

18. The apparatus of claim 15 , wherein the step of scrubbing the portion comprises writing binary zeroes to the portion of the storage device.

19. The apparatus of claim 15 , wherein the step of scrubbing the portion comprises:

during a first pass, writing a random character to the portion of the storage device;

during a second pass, writing a complement of the random character to the portion of the storage device; and

during a third pass, writing a second random character to the portion of the storage device.

20. The apparatus of claim 19 , wherein the processor is further configured to perform the step of, during a fourth pass, reading the portion of the storage device to verify the second random character is stored in the portion of the storage device.

Assignments (8)
AMENDED AND RESTATED PATENT SECURITY AGREEMENT Recorded Jun 27, 2025
From: UNISYS CORPORATION; UNISYS HOLDING CORPORATION; UNISYS NPL, INC.; UNISYS AP INVESTMENT COMPANY I
To: COMPUTERSHARE TRUST COMPANY, N.A., AS COLLATERAL TRUSTEE
Reel/Frame 071759/0527 →
RELEASE OF SECURITY INTEREST Recorded Oct 28, 2020
From: WELLS FARGO BANK, NATIONAL ASSOCIATION
To: UNISYS CORPORATION
Reel/Frame 054231/0496 →
RELEASE OF SECURITY INTEREST Recorded Nov 9, 2017
From: WELLS FARGO BANK, NATIONAL ASSOCIATION
To: UNISYS CORPORATION
Reel/Frame 044416/0114 →
SECURITY INTEREST Recorded Oct 6, 2017
From: UNISYS CORPORATION
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 044144/0081 →
PATENT SECURITY AGREEMENT Recorded Apr 27, 2017
From: UNISYS CORPORATION
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS COLLATERAL TRUSTEE
Reel/Frame 042354/0001 →
SECURITY INTEREST Recorded Feb 10, 2017
From: UNISYS CORPORATION
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS AGENT
Reel/Frame 041227/0490 →
SECURITY INTEREST Recorded Jan 10, 2017
From: UNISYS CORPORATION
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS AGENT
Reel/Frame 040938/0907 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2015
From: LIN, KUNG YI; MILLIGAN, ANDREW DAVID; HOANG, COURTNEY
To: UNISYS CORPORATION
Reel/Frame 036886/0990 →
Continuity (1)
Related Publication 20150324130A1 · Nov 12, 2015