A network of storage devices for encrypting and storing data is provided. A first storage device of the network comprises: a mechanism or
system for authenticating a user via user interaction directly with the first storage device, a mechanism for connecting over a local connection with one or more user devices, and computer-readable memory for storing
electronic data on the first storage device. The first storage device is configured to receive, over the local connection and from a first of the one or more user devices, first data for storage at the first storage device, to encrypt the first data and store the encrypted first data locally in the computer-readable memory of the first storage device; to split the encrypted first data into multiple portions; to apply a cryptographic signature to each of plural groups of one or more of the portions, the cryptographic signature enabling the first storage device to be identified and authenticated by other storage devices of a network of storage devices, to send each of the cryptographically signed groups to a respective other storage device of the network of storage devices, and to create a first
record which associates the first data with the other storage devices of the network to which the cryptographically signed groups of were sent. The first storage device is further configured to, responsive to a request to access the first data, the request to access the first data resulting from a user request to access the first data provided to a
user device and received at the first storage device via a local connection with the
user device, retrieve the encrypted first data from the computer-readable memory, decrypt the encrypted first data, and send, over the local connection with the
user device to which the user request to access the first data was provided, the decrypted first data. The first storage device is further is configured to: receive a request for transmission of previously-received, cryptographically signed second data, authenticate the request for the transmission of the previously-received, cryptographically signed second data as having originated from another storage device of the network of storage devices, and having authenticated the request for the transmission of the previously-received, cryptographically signed second data as having originated from another storage device of the network of storage devices, send the previously-received, cryptographically signed second data to the other storage device of the network of storage devices.