Tuesday, July 08, 2014

Your personal data may not be completely removed with an Android factory reset


You just received your shiny new flagship of a smartphone and now you are ready to put the old one up for sale on eBay, or Craigslist, or Swappa. The secondary market is alive and well with over hundreds of thousands of devices for sale.

You have taken really good care of your older Android device and are certain that it will get a great price from an eager buyer. All you need to do is perform a factory reset and you are good to go, right? Maybe not.



AVAST, an anti-virus software and provides free software, as well as paid services for consumers and businesses alike, took to the internet and
bought 20 used Android phones for the purposes of seeing how much, if any, personal data was still on the devices after a factory wipe and reset had been performed. The results were stunning to say the least.

With the help of some off-the-shelf digital forensic software (such as FTK Imager), AVAST was able to cover the following:
  • Over 40,000 stored photos
  • More than 1,500 family photos of children
  • More than 750 photos of women with varying degrees of clothing on (or off)
  • More than 250 selfies taken by men doing their best imitation of former Congressman Anthony Weiner
  • Over 1,000 Google searches
  • At least 750 emails and text messages
  • More than 250 contacts names and email addresses
  • Four previous owners’ identities
  • One completed loan application
 What is happening then? AVAST’s press release does not note if any of the devices were, in fact, not factory reset or if there were any errors in how devices might have been reset. We also do not know how old, or what version the operating system is on the devices. We reached out to AVAST to see if there were any other variables worth noting in their findings. Taking those issues aside, where is the factory reset falling short? The reset in these instances seems to be focused more on the application layer, and not much more.

AVAST noted that its anti-theft app, free on Google Play, has the ability to delete and overwrite these personal files along with a host of other features. That app, avast! Anti-Theft, and dozens of others may be worth considering before putting your former device, a veritable digital life-wallet up for sale.


sources: AVAST via CNET

No comments:

Post a Comment