Cipher.exe Security Tool for the Encrypting File System (2024)

Summary

Cipher.exe is a command-line tool (included with Windows 2000) that you can use to manage encrypted data by using the Encrypting File System (EFS). As of June 2001, Microsoft has developed an improved version of the Cipher.exe tool that provides the ability to permanently overwrite (or "wipe") all of the deleted data on a hard disk. This feature improves security by ensuring that even an attacker who gained complete physical control of a Windows 2000 computer would be unable to recover previously-deleted data.

IMPORTANT: Please note the following important information:

For additional information about the latest service pack for Windows 2000, click the article number below to view the article in the Microsoft Knowledge Base:

260910 How to Obtain the Latest Windows 2000 Service Pack

More Information

How to Obtain Cipher.exe

Cipher.exe is available in Windows 2000 Service Pack 3 or later or the Windows 2000 Security Rollup Package 1 (SRP1) or individually via the links below.
For additional information on SRP1, click the article number below to view the article in the Microsoft Knowledge Base:

311401 Windows 2000 Security Rollup Package 1 (SRP1), January 2002
Q298009_W2K_SP3_x86_en.exe contains the following files:
Date Time Version Size Filename
------------------------------------------------------
May-30-2001 16:25 5.0.2195.3653 36,112 Cipher.exe
May-26-2001 07:48 5.0.2195.3649 512,272 Ntfs.sys

How to Use Cipher.exe

To overwrite the deallocated data:

  1. Quit all programs.

  2. Click Start, click Run, and type cmd, and then press ENTER.

  3. Type cipher
    /w:'folder', and then press ENTER, where folder is optional and can be any folder in a local volume that you want to clean. For example, the
    cipher /w:c:\test command causes the deallocated space on drive C: to be overwritten. If c:\test is a mount point or points to a folder in another volume, deallocated space on that volume will be cleaned.

For more information about EFS, please see the following Microsoft Web site:

http://technet.microsoft.com/en-us/library/cc700811.aspx

Cipher.exe Security Tool for the Encrypting File System (2024)

FAQs

Cipher.exe Security Tool for the Encrypting File System? ›

Cipher.exe is a command-line tool that can be used to manage encrypted data by using the Encrypting File System (EFS). Whenever any files or folder is deleted the data is not deleted, only the space on the disk that was occupied by the deleted data is deallocated.

What is the Windows cipher EXE tool used for? ›

Administrators can use Cipher.exe to encrypt and decrypt data on drives that use the NTFS file system.

How to use a cipher tool? ›

How to Use Cipher.exe
  1. Quit all programs.
  2. Click Start, click Run, and type cmd, and then press ENTER.
  3. Type cipher. /w:'folder', and then press ENTER, where folder is optional and can be any folder in a local volume that you want to clean. For example, the.

What is the Windows security encrypting file system? ›

EFS is a user-based encryption control technique that enables users to control who can read the files on their system. The typical method of using EFS is to perform encryption at the folder level. This ensures that all files added to the encrypted folder are automatically encrypted.

Is cipher command safe? ›

Using the cipher command is a straightforward way to securely wipe the free space on your hard drives in Windows, ensuring that previously deleted data cannot be recovered. This method is useful for maintaining privacy and security without needing additional software installations.

What does cipher do? ›

A cipher is a method used in cryptography for performing encryption or decryption. Essentially, it's a set of algorithms that you apply to your data (plaintext) to transform it into an unrecognizable form (ciphertext).

What does running cipher do? ›

Cipher is a tool used for enabling or disabling encryption on files or folders, your command is going to write random I/O to the drive to obfuscate it, if it's only doing a single pass, that's not 100% secure.

How to encrypt a password using a cipher? ›

Open a terminal, navigate to the <IS_HOME>/bin/ directory, and execute the following command (You must first enable the Cipher tool for the product by executing the -Dconfigure command with the cipher tool script as shown below). Go back to the deployment. toml file and see that the alias passwords are encrypted.

How do you encrypt a message using cipher? ›

Write down the letters of the alphabet in order, from A to Z. Shift each letter of the alphabet by the “shift” value. For example, if the shift value is 3, A would become D, B would become E, C would become F, and so on. Encrypt your message by replacing each letter with the corresponding shifted letter.

What is an example of a cipher? ›

For example, "GOOD DOG" can be encrypted as "PLLX XLP" where "L" substitutes for "O", "P" for "G", and "X" for "D" in the message. Transposition of the letters "GOOD DOG" can result in "DGOGDOO". These simple ciphers and examples are easy to crack, even without plaintext-ciphertext pairs.

How to encrypt a file on Windows? ›

Right-click (or press and hold) a file or folder and select Properties. Select the Advanced button and select the Encrypt contents to secure data check box. Select OK to close the Advanced Attributes window, select Apply, and then select OK.

How do I know if a file is encrypted in Windows? ›

Check if your device is encrypted (Windows 10 Home edition)

Select the settings cogwheel icon. Select 'Update & Security'. In the left-hand column, select 'Device encryption'. If you see the message 'Device encryption is on' with the option to 'Turn off', your hard drive is encrypted.

How do I remove encryption from a file in Windows? ›

Right-click the encrypted file(s), then select Properties. On the General tab, click Advanced. Uncheck the box next to “Encrypt contents to secure data,” then click OK. Confirm encryption removal by clicking OK, then Yes.

Which cipher is more secure? ›

Difference between Block Cipher and Stream Cipher
Block CipherStream Cipher
More secure than stream ciphers when the same key is used multiple times.Less secure than block ciphers when the same key is used multiple times.
key length is typically 128 or 256 bits.key length is typically 128 or 256 bits.
10 more rows
Mar 1, 2024

How long does Windows cipher take? ›

If there's one downside, Cipher is very slow. A large hard drive could take all night (or all day if you're a vampire), and even secure deleting a single folder can take a half-hour or more. For example, let's say you wanted to securely wipe all deleted files from Documents.

How do you securely delete files from your hard drive? ›

The safest way to permanently delete files from your hard drive is through a process called “zero fill.” When you zero fill a storage device, you're overwriting your entire drive contents with zeroes so that data on that drive can no longer be recovered by others.

What are Windows ciphers? ›

Cipher suites are a named combinations of authentication, encryption, message authentication code, and key exchange algorithms used for the security settings of a network connection using TLS protocol.

What are cipher suites used for? ›

Cipher suites are sets of instructions that enable secure network connections through Transport Layer Security (TLS), often still referred to as Secure Sockets Layer (SSL). Behind the scenes, these cipher suites provide a set of algorithms and protocols required to secure communications between clients and servers.

What is the cipher command in command prompt? ›

You can use the Cipher /w:C command line command to remove deleted files permanently. To wipe deleted files from a drive other than C:, substitute the actual drive letter that you wish to scan. Data that is not allocated to files or folders is overwritten. This permanently removes the data.

How do I disable ciphers in Windows? ›

The Disable-TlsCipherSuite cmdlet disables a cipher suite. This cmdlet removes the cipher suite from the list of Transport Layer Security (TLS) protocol cipher suites for the computer.

Top Articles
Latest Posts
Article information

Author: Fredrick Kertzmann

Last Updated:

Views: 6491

Rating: 4.6 / 5 (66 voted)

Reviews: 81% of readers found this page helpful

Author information

Name: Fredrick Kertzmann

Birthday: 2000-04-29

Address: Apt. 203 613 Huels Gateway, Ralphtown, LA 40204

Phone: +2135150832870

Job: Regional Design Producer

Hobby: Nordic skating, Lacemaking, Mountain biking, Rowing, Gardening, Water sports, role-playing games

Introduction: My name is Fredrick Kertzmann, I am a gleaming, encouraging, inexpensive, thankful, tender, quaint, precious person who loves writing and wants to share my knowledge and understanding with you.