# FBI/NSA recovering deleted files

**URL:** <https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839>\
**Category:** Factual Questions\
**Created:** [November 13, 2025, 8:50pm UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839 "2025-11-13T20:50:24Z")\
**Posts on this page:** 8\
**Page:** 3

<div class="post-metadata">

**Author:** ![echoreply](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/echoreply/32/3641_2.png) [@echoreply](https://boards.straightdope.com/u/echoreply)\
**Post date:** [November 14, 2025, 7:13pm UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/41 "2025-11-14T19:13:39Z")

</div>

> [@Mangetout](#):
>
> you don’t really want to wait while it counts and verifies that every bit is really there

Doing it every time would be silly, but sometimes you definitely want to do it. Linked below is the utility I use. `f3probe` is fast because it only tries to write to the end of the disk, but to work best it is destructive, so not suitable for automatic use every time something is attached.

I’m not in the habit of buying “too good to be true” drives, so I mostly use it to validate if flash storage is still good or has failed. I use `f3write` and `f3read` to simultaneously wipe and test flash devices. It writes out deterministic uncompressible data, so then can test that it reads back the correct data. I’ve found various USB drives and flash cards that have gone bad.

Wiping flash cards and USB memory sticks is more difficult than SSD drives, because they rarely have trim or secure erase features. `f3write` is an excellent way to guarantee no old files can be recovered from a USB memory stick or flash card.

> **[GitHub - AltraMayor/f3: F3 - Fight Flash Fraud](https://github.com/AltraMayor/f3)**
>
> F3 - Fight Flash Fraud

> [@Dark\_Sponge](#):
>
> It’s pretty easy to Bitlocker an entire SSD and then delete the key.

Yes, by far the best way to protect data from future recovery is to encrypt it before writing it.

---

<div class="post-metadata">

**Author:** ![BigT](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/bigt/32/12044_2.png) [@BigT](https://boards.straightdope.com/u/BigT)\
**Post date:** [November 14, 2025, 7:16pm UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/42 "2025-11-14T19:16:33Z")

</div>

I know that a lot of (but not all) SSDs come with a secure delete option that is designed to reflash the entire drive to delete everything. Mine didn’t, but that was listed as more expensive ones have.

Encryption is great for this purpose, but also means that getting data off the drive if your computer dies or you need to replace certain parts becomes much more difficult. You’d better have backups. And note the S at the end of that word.

---

<div class="post-metadata">

**Author:** ![Heracles](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/heracles/32/487_2.png) [@Heracles](https://boards.straightdope.com/u/Heracles)\
**Post date:** [November 14, 2025, 9:43pm UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/43 "2025-11-14T21:43:44Z")

</div>

> [@LSLGuy](#):
>
> Evil bastards should be strung up by their 'nads.

You can try, but the 'nads will probably just dissolve into plastic dust that will contaminate your rope.

---

<div class="post-metadata">

**Author:** ![Digital\_is\_the\_new\_Analog](https://avatars.discourse-cdn.com/v4/letter/d/a88e4f/32.png) [@Digital\_is\_the\_new\_Analog](https://boards.straightdope.com/u/Digital_is_the_new_Analog)\
**Post date:** [November 15, 2025, 12:06am UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/44 "2025-11-15T00:06:59Z")

</div>

> [@LSLGuy](#):
>
> 100 bytes each

They were the customary 512 bytes most of the time. Although there was a special case where I presented a 520 byte block, for an AS/400. That had a ton of interesting issues to deal with.

---

<div class="post-metadata">

**Author:** ![Chronos](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/chronos/32/134_2.png) [@Chronos](https://boards.straightdope.com/u/Chronos)\
**Post date:** [November 15, 2025, 3:27am UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/45 "2025-11-15T03:27:14Z")

</div>

> [@Mangetout](#):
>
> Same thing with email protocols - they were created in a more innocent time where the headers just honestly stated who you are because why else would they exist?

Everyone’s always aghast when they learn that, but really, we’ve had hundreds of years to get used to it. Because that’s how return addresses on physical mail work, too.

> [@echoreply](#):
>
> It writes out deterministic uncompressible data,

Strictly speaking, isn’t that an oxymoron? Though of course, using cryptography, it’d be easy enough to come up with something that, while it could be compressed, doing so without the proper key would take æons.

---

<div class="post-metadata">

**Author:** ![echoreply](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/echoreply/32/3641_2.png) [@echoreply](https://boards.straightdope.com/u/echoreply)\
**Post date:** [November 15, 2025, 5:52am UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/46 "2025-11-15T05:52:26Z")

</div>

> [@Chronos](#):
>
> Strictly speaking, isn’t that an oxymoron?

I don’t really think so. Pseudorandom data with a known seed is reproducible, but not compressible\[1\] by anything that is typically meant when talking about a compression algorithm (DEFLATE, zstd, etc.). I guess one could say the datastream could be “compressed” into the seed and pseudorandom algorithm, but unless you’re smart enough to figure those things out from the datastream itself, I don’t think it counts.

For a tool like `f3write`, it doesn’t have to be cryptographically secure, just sufficiently random to subvert filesystem (or hardware) level compression, and predictable enough to verify if the underlying storage preserves fidelity.

* * *

1. as long as the repeat cycle of the pseudorandom algorithm exceeds the duplicate block size search of the compression algorithm

---

<div class="post-metadata">

**Author:** ![Mangetout](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/mangetout/32/19_2.png) [@Mangetout](https://boards.straightdope.com/u/Mangetout)\
**Post date:** [November 15, 2025, 8:49am UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/47 "2025-11-15T08:49:39Z")

</div>

> [@Chronos](#):
>
> Everyone’s always aghast when they learn that, but really, we’ve had hundreds of years to get used to it. Because that’s how return addresses on physical mail work, too.

The interesting thing is that the mean time between a) implementation of a technology and b)widespread implementation of that technology for fraud has steadily decreased to the point where now, the fraudulent use is often the _first_ common use.

---

<div class="post-metadata">

**Author:** ![LSLGuy](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/lslguy/32/5813_2.png) [@LSLGuy](https://boards.straightdope.com/u/LSLGuy)\
**Post date:** [November 15, 2025, 1:39pm UTC](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839/48 "2025-11-15T13:39:39Z")

</div>

Who knew universal anonymous communication would bring out the worst aspects of human nature? Even more so when law enforcement is largely national / subnational while the communication is explicitly borderless.

[Previous page](https://boards.straightdope.com/t/fbi-nsa-recovering-deleted-files/1024839.md?page=2)
