Re ransomware, how do you prevent it from deleting remote backups?
Re ransomware, how do you prevent it from deleting remote backups?
Re ransomware, how do you prevent it from deleting remote backups?
It can't, locks on objects cannot be removed in compliance mode. They can only expire.
https://www.backblaze.com/b2/docs/file_lock.html
https://docs.aws.amazon.com/AmazonS3/latest/userguide/object...
Of course finding the bugs in firmware and writing a custom replacement is not trivial. It is conceptually possible though.
The only safe answer is a device in a vault without power. Of course once you retrieve it from the vault you risk whatever erased your data in the first place returning to get this too.
Good luck, you get to decide how paranoid you want go be.
It works really nicely, I can't even remove my own data with my own credentials. It's really a nice additional security layer.
Big security issue, and honest people will just apply for a bug bounty or otherwise responsible disclosure. Most honest people are not actively looking for such bugs though, so evil people are more likely to find them. An evil person is can make even more money from a successful ransom. (there are also honest people looking, but many wrote the code so they may be too close to the problem to see it)