{
  "slug": "cryptographic-erase",
  "term": "Cryptographic erase",
  "aliases": [
    "Crypto erase",
    "CE"
  ],
  "definition": "Cryptographic erase sanitizes the keys protecting encrypted target data so that recovering the plaintext becomes infeasible.",
  "note": "This can sanitize access without rewriting every ciphertext block. It requires suitable cryptography and key management, coverage of the target data before sanitization, and removal of every necessary copy of the target keys. Deleting an account password is not automatically key sanitization. Sensitive plaintext stored before encryption needs a different suitable treatment.",
  "status": "shipping",
  "advantages": [
    {
      "text": "Can avoid a full-media rewrite when its cryptographic prerequisites are satisfied.",
      "citationIds": [
        "nist-r2"
      ]
    }
  ],
  "limitations": [
    {
      "text": "Backups or escrow copies of keys need separate assessment; ciphertext remains, so required long-term confidentiality also matters.",
      "citationIds": [
        "nist-r2"
      ]
    }
  ],
  "related": [
    "self-encrypting-drive",
    "sanitize-nvme",
    "data-sanitization",
    "secure-erase"
  ],
  "supersedes": [],
  "supersededBy": [],
  "firstSeen": null,
  "lastSeen": null,
  "citations": [
    {
      "id": "nist-r2",
      "title": "NIST SP 800-88 Rev. 2 (2025), Guidelines for Media Sanitization, sections 3 and 4.5",
      "url": "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-88r2.pdf",
      "accessed": "2026-10-10"
    },
    {
      "id": "hesela",
      "title": "Hesela: SSD sanitization: why TRIM and a successful command are not enough",
      "url": "https://hesela.com/analyses/ssd-sanitization-trim-evidence/",
      "accessed": "2026-10-10"
    }
  ]
}
