Do these 3 things before closing this tab:
1Clear out junk files and repair common Windows errors2Scan for outdated or missing drivers - takes under a minute3Repair Windows errors before they cause bigger problemsHome Depot said malware put about 56 million unique payment cards at risk in 2014. After discovering the breach, the retailer announced that it had finished rolling out enhanced payment-data encryption in its U.S. stores. The measure added protection for card information, but it was not a guarantee against malware reaching data while a payment terminal was processing it.
What happened in the Home Depot breach?
Home Depot said malware was believed to have been present in its payment system from April through September 2014. The company began investigating on September 2, after receiving reports from banking partners and law enforcement, and publicly confirmed the breach on September 8. In a September 18 update, it estimated that approximately 56 million unique payment cards had been put at risk. That is the company’s estimate of cards, not a confirmed count of individual people. Home Depot’s September 18, 2014 update.
The incident also involved customer contact information. On November 6, Home Depot said separate files containing approximately 53 million email addresses had been taken. The company distinguished this theft from the payment-card data breach. Home Depot’s November 6, 2014 update.
Home Depot said it had no evidence that debit-card PINs were compromised, and that Mexico stores and online shoppers were not affected. These are statements from the company about the scope it had established at the time, not a broader finding about all possible risks. Home Depot’s September 18, 2014 update.
#1 Best Overall
- Certified to FIPS 197 - High-level information security standard approved by the U.S. Government
- Brute-Force Password Attack Protection - Data is automatically erased after 6 failed access attempts. The data and encryption key are securely destroyed and the crypto drive is reset
- Rugged Double-Layer Waterproof* Design - Protects the crypto drive against knocks, drops, break-in and submerging in water. The electronics are shielded by a hardended inner case. The rubberised silicone outer casing provides a final layer of protection
- Auto-lock - The crypto drive will automatically encrypt all data and lock when removed from a PC/Mac or when the screen saver or "computer lock" function is activated on the host PC/Mac
- Secure Entry - Data cannot be accessed without the correct high-strength alphanumeric 8-16 character password. A password hint option is available. The password hint cannot match the password
What encryption did Home Depot add?
Home Depot said its encryption project began in January 2014, before the breach was publicly confirmed. The company reported that the U.S. rollout was complete on September 13, 2014, and that the technology was provided by Voltage Security and validated by two independent IT security firms. It planned to finish the rollout in Canada by early 2015. Home Depot’s September 18, 2014 update.
The company described the system as scrambling raw payment-card information to make it unreadable and “virtually useless to hackers.” That wording reflects Home Depot’s characterization of the technology, not a guarantee that card data could never be exposed. The announcement followed the breach investigation; it should not be read as evidence that the completed U.S. rollout had prevented the 2014 theft.
Rank #2
- Certified to FIPS 197 - High-level information security standard approved by the U.S. Government
- Brute-Force Password Attack Protection - Data is automatically erased after 6 failed access attempts. The data and encryption key are securely destroyed and the crypto drive is reset
- Auto-lock - The crypto drive will automatically encrypt all data and lock when removed from a PC/Mac or when the screen saver or "computer lock" function is activated on the host PC/Mac
- Secure Entry - Data cannot be accessed without the correct high-strength alphanumeric 8-16 character password. A password hint option is available. The password hint cannot match the password
- SuperSpeed USB 3.0 - Transfer all your confidential files and folders faster than ever before. Works on both PC & Mac
Could encryption stop malware from stealing card data?
Encryption can make protected payment data harder to use if it is obtained in an encrypted form. But CRN reported a limitation relevant to Home Depot’s terminals: malware could access card data while it was briefly held in cleartext in terminal memory. In other words, encrypting card data does not by itself prevent malware from compromising a terminal or capturing data before encryption takes effect. CRN’s report on Home Depot’s encryption measures.
The breach response involved distinct security measures with different roles:
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
Rank #3
- Certified to FIPS 197 - U.S. Government Approved High Level Information Security Standard.
- Protection against brute force password attacks - Data is automatically erased after 6 unsuccessful access attempts. The data of the USB flash drive type c encryption with dual connectors is destroyed and the cryptographic drive is reset.
- Durable dual-layer waterproof design* — Protects the crypto reader from bumps, drops, run-in and immersion in water. The electronics are protected by a hardened internal case. Rubberized silicone outer case provides a final layer of protection.
- Auto-Lock —The cryptographic key automatically encrypts all data and locks when removed from a PC/Mac or when screen protection or "computer lock" is enabled.
- Secure Entry —Data on these flash drives cannot be accessed without the correct alphanumeric password of 8 to 16 characters. A password indication option is available for this flash drive. The hint cannot match the password.
- Encryption: protects payment data by transforming it so that intercepted encrypted information is harder to read or use.
- Malware detection and containment: addresses malicious software in a network or payment environment. Home Depot said it had eliminated the malware from its U.S. and Canadian networks in its September 18 update.
- EMV chip-and-PIN: Home Depot said it planned to deploy the system in U.S. stores by the end of 2014. This was a separate checkout security measure, not another name for encryption.
These safeguards are complementary rather than interchangeable: encryption does not remove malware, and adopting a different checkout technology does not establish that every point of exposure has been closed.
What did Home Depot tell affected customers?
Home Depot chairman and CEO Frank Blake apologized for the “inconvenience and anxiety” and said customers would not be liable for fraudulent charges. That was the company’s assurance in its September 18, 2014 statement. Home Depot’s September 18, 2014 update.
Rank #4
- FIPS 197 with XTS-AES 256-bit Encryption: Provides business-grade security with hardware-based encryption to protect your sensitive data
- Brute Force and BadUSB Attack Protection: Safeguards against unauthorized access attempts and malicious USB attacks with digitally-signed firmware
- Multi-Password Option with Complex/Passphrase modes: Offers flexible password configuration options to meet various security requirements and user preferences
- New Passphrase Mode: Enhanced security feature allowing users to create longer, more memorable password phrases for easier access without compromising protection
- Dual Read-Only (Write-Protect) Settings: Enables write protection functionality to prevent accidental data modification or deletion when needed
The incident later led to a settlement program. The official settlement FAQ describes a $13 million settlement fund and security-program commitments that included enhanced encryption and measures for card transactions. The FAQ does not establish current eligibility or whether a reader can still submit a claim. Home Depot Breach Settlement FAQ.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.How the response unfolded
| Date | What Home Depot reported |
|---|---|
| April–September 2014 | Period when malware was believed to have been present, according to Home Depot. |
| September 2, 2014 | Home Depot said it began investigating after reports from banking partners and law enforcement. |
| September 8, 2014 | The company publicly confirmed the payment-system breach. |
| September 13, 2014 | Home Depot said the enhanced encryption rollout was complete in U.S. stores. |
| September 18, 2014 | The company announced malware elimination from U.S. and Canadian networks and detailed its encryption rollout. |
| November 6, 2014 | Home Depot reported that separate files containing approximately 53 million email addresses had been taken. |
The chronology matters: the breach was already under investigation before the U.S. encryption rollout was declared complete. The announcement was a description of a security improvement after the incident, not evidence that encryption alone could have stopped the attack.
Quick Recap
Best Value
- FIPS 140-3 Level 3 (Pending) Certified Military-Grade Security
- OS/Device Independent
- XTS-AES Hardware Encryption
- Enforced Alphanumeric PIN
- Multi-PIN (Admin and User) Option
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




