Lab accepting new cases ·  Mon–Fri, 9am–5:30pm Urgent? Call 01273 964902
BDR Brighton Data Recovery 01273 964902 Start a case
BDR / Specialist / Western Digital data recovery

Specialist · Western Digital recovery

Every My Passport is encrypted. Including yours.

Here's the fact that decides WD recoveries: My Passport and My Book drives encrypt everything, always, in the USB board — password or no password. Peer-reviewed analysis of these drives found user data “is always encrypted using this key.” Which is why the golden rule of WD recovery is four words long: send the whole thing.

No fix, no fee on most jobs Free diagnosis & written quote Post-in from anywhere in Sussex

Talk it through with an engineer
01273 964902

What you're seeing, decoded.

Something else? Run the triage →
The situationWhat it meansFirst move
Passport not recognised, light blinkingFailed USB bridge or firmware fault — the drive behind it is often healthyWhole unit to the bench
Shucked the drive — SATA shows it unformattedNormal and terrifying: without its board's key, the disk is ciphertextDo NOT initialise — reunite them
Windows offers to initialise the WD driveOne click writes over an encrypted volume's structuresDecline, power down
Passport dropped, now clickingHead damage — mechanical recovery plus the encryption chainBoth problems, one lab
My Cloud NAS dead or reset-temptedDifferent beast: standard Linux storage, no bridge encryptionNever factory reset it
My Book Duo showing half its sizeFactory RAID 0 pair behind hardware AESBoth drives plus the board
Getting it to us: post your device tracked and fully insured to our secure intake lab — free return postage — or start by phone and we'll walk you through packing it. Sending details are on the contact page.

Know your WD — they are not the same drive.

My Passport & My BookUSB drives with always-on AES-256 enforced by the bridge chip — JMicron and Symwave families. The data encryption key lives on that board: disk and board are a matched pair, and separated they are noise.
ElementsThe plainer sibling — but the bridge still matters, the board still carries drive-specific electronics, and the same rule applies: broken or not, everything travels together.
My CloudA small Linux NAS in WD clothing: standard EXT4 and mdadm inside, no bridge encryption. Its cardinal sin is different — a factory reset rewrites the partition and RAID layout over your data.
The SMR generationRecent slim Passports pair shingled recording with locked security processors — the key lives inside the controller itself, so even board swaps need the original ROM and specialist firmware workflow. Imaging is slower; the rules are stricter.

How we recover it, stage by stage.

See recent recoveries →
01

Booked in, diagnosed free Free

Your device is logged with its own case reference the moment it arrives. An engineer assesses the fault, confirms what's actually recoverable, and you get a fixed price in writing — no diagnosis fee, no obligation, and no paid work until you say go.

Free diagnosisFixed written quoteNo obligation
02

Reunite drive and board

Recovery starts by getting the matched pair talking — bridge repaired or its keys migrated — so the drive decrypts as designed instead of reading back scrambled sectors.

Bridge repaired or keys movedDecrypts, never guesses
03

Fix the fault behind it

With the encryption chain intact, the actual fault gets the standard treatment: donor heads for the dropped ones, board work for the surge-killed, firmware repair for the vanished.

Matched donor partsFirmware bench work
04

Image through the encryption

The drive is imaged with decryption in the loop, the file system rebuilt on the copy, and your folders return exactly as the Passport held them.

Decrypted image takenFolders as you left them
05

Verified, returned, signed off

Before you pay the recovery fee you approve a full listing of what came back. Your data returns on new media with free return postage, and the case only closes once you've confirmed everything opens on your side.

File listing approvalNew media includedFree return postage

What the lab checks first

  • Disk and board are a matched pair — the encryption key lives in the bridge, so a healthy WD disk behind a dead board is a locked safe. Recovery means the pair, always.
  • The shucking tutorials are a casualty pipeline — half our WD emergencies start with a bare disk, a SATA dock and an accepted initialise prompt.
  • SMR Passports image on their own clock — shingled recording plus locked security processors mean slower, stricter work. Same outcome, more patience.
  • My Cloud plays by NAS rules — standard Linux arrays, no bridge crypto, and a reset button that's the real enemy. Our NAS page picks up that thread.

The published fact behind our four-word rule: security researchers who tore down WD's self-encrypting portable range documented factory-set AES-256 running on every unit regardless of user settings — encryption the owner never sees until the board that holds the key dies. 'Send the whole thing' isn't caution; it's cryptography.

From the casebook.

EX · BDR-2026-0834VERIFIED ✓

A shucked Passport, an initialised disk, and a very close call

A confident YouTube tutorial, a bare WD disk in a SATA dock, and Windows' initialise prompt accepted before the doubt set in. The original board arrived in the same envelope — keys recovered from the bridge, the small damage from initialisation repaired on the image, and fifteen years of family photos decrypted intact.

98% recoveredThe board saved it

Before it reaches us.

Do

  • Send the whole unit — enclosure, board, cable, all of it
  • Keep the original board even if it's visibly dead
  • Say if a password was ever set on the drive
  • Label which WD product it is, if you know

Don't

  • Shuck a My Passport to 'test it directly'
  • Let Windows initialise a WD drive it can't read
  • Factory-reset a My Cloud for any reason
  • Swap in a donor board without the ROM work

Asked on this bench, answered honestly.

Is my WD My Passport really encrypted if I never set a password?

Yes. These drives ship with hardware AES-256 switched on from the factory — a password only adds a lock on top of encryption that's already running. It's invisible right up until the USB board fails, at which point it's the whole story.

Can I remove the drive from my WD enclosure and read it directly?

No — that's the one WD mistake that turns routine into risky. The decryption key lives on the enclosure's board, so the bare disk reads as unformatted garbage, and accepting Windows' initialise offer damages real structures. Whole unit, always.

My WD drive isn't recognised — is the data gone?

Usually not. Failed bridges, ports and firmware faults are the common causes, and the platters behind them are typically untouched. This is one of the better-odds faults on the bench — provided the drive arrives whole and un-experimented-on.

Is a WD My Cloud the same situation?

No — and the difference matters. My Cloud units are little Linux NAS boxes using standard storage with no bridge encryption; their danger is the factory-reset button, which rewrites the layout over your data. Dead unit, healthy drives is the usual happy diagnosis.

Whatever's failed, don't power it on again.

Every restart of a damaged device costs data. Open a case first — the diagnosis is free either way.

01273 964902