>>Another point to bear in mind is that their are products that can "spy" on >memory in running applications/processes. So, even if a crypto product only >decrypts "in memory, never on disk" it is still vulnerable to being read >there.
>
>
>I appreciate the insight regarding spy software and memory dumping...
>can you name a specific product with this ability?
Here are a few.
http://www.softpedia.com/public/cat/5/1/
ICQ 10556 (ya), 254117