Vista and Windows 7 save bits of information to a central location in the background.
Instances I know of are desktop search indexes, recent documents and thumbnails (saved to \Users\[User Account Name]\AppData\Local\Microsoft\Windows\Explorer
).
How can I ensure no information is saved from, say, monuted TrueCrypt drives, or inserted USB drives?
Is there a way to configure Widnows 7 so that so that only programs the user explicitly runs, and not background services, have access to data on a drive. Even better, is it possible do this so a whole whole category of drives is blocked (e.g. all removable drives, and then always mount TC drives as removable)?
Note that I wouldn't want to disable desktop search and thumbnail caching entirely -- that would be too inconvenient.
Edit: * Paper by Bruce Scheiner related to leakage of information from encrypted volumes.