Skip to content

About

No description, website, or topics provided.

Resources

Stars

0 stars

Watchers

0 watching

Forks

Latest commit

 

History

30 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

# SecureWipe

## Secure Data Sanitization Prototype

SecureWipe is a prototype secure data sanitization application designed to demonstrate

safe, verifiable, and standards-aligned data wiping workflows for end-of-life storage

devices.

The prototype detects storage devices, analyzes their media type, recommends an

appropriate sanitization approach, simulates the sanitization operation, verifies the

result, and generates digitally signed sanitization certificates.

---

## Problem

Improper disposal of storage devices can leave sensitive user data recoverable.

SecureWipe aims to provide a structured sanitization workflow that can be used before

storage devices are reused, recycled, or disposed of.

---

## Key Features

- Physical storage device detection

- HDD, SSD and NVMe SSD identification

- Device health and configuration analysis

- Media-aware sanitization recommendations

- NIST SP 800-88 Rev. 2 mapping

- Safe simulation mode

- Sanitization result verification

- SHA-256 integrity hashing

- Digitally signed JSON certificates

- RSA-2048 / SHA-256 certificate signatures

- Third-party certificate verification

- Certificate tamper detection

- PDF sanitization certificates

- QR-code generation

- Graphical user interface using Tkinter

- Offline-capable prototype architecture

---

## Safety

SecureWipe currently operates in **SIMULATION MODE**.

No physical storage device data is erased by the current prototype.

The device detection and analysis components are read-only. The sanitization engine

does not execute destructive disk-erasure commands.

---

## NIST Alignment

SecureWipe provides high-level sanitization recommendations aligned with

**NIST SP 800-88 Rev. 2**.

The recommendation depends on the detected storage media.

For solid-state storage, the prototype recommends an appropriate device-supported

Purge technique. Cryptographic Erase may be applicable when supported by the device

and encryption architecture.

For magnetic storage, an appropriate Clear or Purge technique may be selected based

on the media and organizational requirements.

The prototype does not claim that a physical sanitization operation has been

performed.

---

## Certificate System

After a simulated sanitization operation, SecureWipe can generate:

1. JSON sanitization certificate

2. PDF sanitization certificate

3. QR code associated with the certificate

4. SHA-256 result hash

5. RSA digital signature

Certificates can be independently verified using the public key.

If a certificate is modified after signing, signature verification fails and the

system reports tampering.

---

## Project Structure


SecureWipe/

│

├── src/

│   ├── main.py

│   ├── gui.py

│   ├── device\_detector.py

│   ├── physical\_disk\_detector.py

│   ├── device\_manager.py

│   ├── device\_analyzer.py

│   ├── wipe\_engine.py

│   ├── verifier.py

│   ├── nist\_mapping.py

│   ├── certificate\_generator.py

│   ├── pdf\_generator.py

│   ├── qr\_generator.py

│   ├── signer.py

│   └── signature\_verifier.py

│

├── tests/

│   ├── test\_wipe\_engine.py

│   ├── test\_certificate.py

│   ├── test\_pdf\_certificate.py

│   ├── test\_signer.py

│   ├── test\_signature\_verifier.py

│   ├── test\_tampered\_certificate.py

│   ├── test\_nist\_mapping.py

│   └── test\_qr\_generator.py

│

├── certificates/

├── keys/

├── .gitignore

├── README.md

└── requirements.txt

About

No description, website, or topics provided.

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages