Hardware Encryption is not Secure
A Little History…
In the past, it was assumed that hardware encryption is far more secure than software encryption. Many people, including security experts, still believe this to be true. And in the past, it was true.
But recent history has proven that hardware encryption is highly vulnerable. The widely published recently discovered hardware encryption vulnerabilities include Spectre and Meltdown. Both Spectre and Meltdown exploit flaws in processors.
Our good friend Steve Gibson has also outlined severe security vulnerabilities in a hardware-encrypted solid-state drive (SSDs). Every SSD that researchers have examined has been found to have such a critical vulnerability that there is almost no barrier to accessing encrypted data on these drives. Steve outlined the details on his Security Now Podcast.
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for the attacks, policy moves, and industry shifts that changed the picture after this article was published.
Free. Weekday mornings. 5 minutes or less.
Built from 100+ trusted cybersecurity sources.
Backdoors and Poor Encryption Standards
Hardware companies are notorious for including back doors. The expectation or concern is that companies and even governments include back doors at the chip level. This is entirely feasible and also likely.
It has also been reported that poor practices lead to hardware encryption vulnerabilities. For example, encryption keys may not be held securely or may not be unique to each machine.
The Solution?
The solution is quite simple. Ensure that you encrypted your data using reputable software encryption. You will certainly keep your data more secure than with hardware encryption alone. The software should be widely accepted. Don’t use an encryption solution that is lesser-known or obscure. Strong encryption requires methodical perfection in its processes because encryption is only as secure as its weakest link.
I use VeraCrypt or AxCrypt. Both are free, widely accepted, and secure!
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for the developments, risk shifts, and new signals that changed the picture after this article was published.
Free. Weekday mornings. 5 minutes or less.
Built from 100+ trusted cybersecurity sources.
Newer CyberExperts coverage on this topic
This article still works as background. If you want the current picture, start with the freshest related coverage below and today's brief.
10 Common Encryption Methods in 2026
A practical guide to common encryption methods and where symmetric, asymmetric, hashing, and related approaches fit in modern security.
5 Super Asymmetric Encryption Example Use Cases
Asymmetric Encryption Example use cases can help enterprises with the numerous challenges they must deal with, especially in cybersecurity matters.FFor example, mobile...
How to Encrypt Internet Connection in 2023 – Top 5 Methods
There has been an increased uptake of remote working following a global pandemic that disrupted normal office-based work methods. Currently, at least...
The 5-Minute Cyber Brief: August 28, 2026
The fastest way to catch up on what changed after this article was published.