Skip to content
Data Security • 2026 Update

The 3-2-1 Backup Rule is Dead.
Meet 3-2-1-1-0.

Modern ransomware doesn't just encrypt your PC—it hunts for your backups too. Here is why the old standard fails and how to build a bulletproof defense.

ED

By The Storage Team

EasyDriveCompare.com

What Is the 3-2-1 Backup Rule?

The 3-2-1 rule is a simple data backup strategy developed by photographer Peter Krogh in the mid-2000s. The logic is straightforward: keep 3 copies of your data, stored on 2 different media types, with 1 copy kept offsite.

The three numbers represent different layers of protection:

  • 3 copies — your original files, plus two independent backups. If one copy is destroyed, you still have two others.
  • 2 media types — for example, an internal hard drive plus an external USB drive. If one type fails (e.g., a hard drive crash), the other medium is unaffected.
  • 1 offsite — a copy kept in a different physical location. If your home suffers a fire, flood, or burglary, your offsite copy survives.

When Krogh published this strategy, it was genuinely excellent advice. Before cloud storage became ubiquitous, convincing people to keep even one external backup was a battle. The 3-2-1 rule simplified that conversation into three memorable numbers, and it became the de-facto standard for IT departments and photographers alike.

Why the Old Rule Is No Longer Enough

For two decades, IT professionals swore by the 3-2-1 Rule. It was simple. It was effective. But in 2026, following it without modification is dangerous advice. Why? Because it assumes your backups are safe from infection.

Modern ransomware (like LockBit 4.0) spends weeks inside a network before detonating. It actively scans for connected backup drives, NAS units, and even cloud sync folders, encrypting them alongside your main files. If your "offsite" copy is just a Dropbox or OneDrive sync, it gets encrypted too — and deleted from the cloud within minutes.

The 3-2-1 rule also has no requirement for backup verification. Many people discover their backups are corrupt or incomplete only when they actually try to restore — which is the worst possible moment to find out.

The New Standard: 3-2-1-1-0

To survive a modern attack, you need two new layers of defense: Immutability and Zero Errors.

  • 3
    Copies of Data

    The original data + two backups. This part hasn't changed.

  • 2
    Different Media Types

    e.g., Local SSD + NAS, or NAS + Cloud. Don't keep everything on one device.

  • 1
    Offsite Copy

    Cloud storage or a physical drive at a different location (to protect against fire/theft).

  • 1
    Offline / Immutable Copy

    CRITICAL: A copy that cannot be modified or deleted, even by an admin. This is your "Air Gap".

  • 0
    Zero Errors

    Verified backups with 0 errors. A backup you haven't tested is just a wish.

How to Build an "Immutable" Backup

You don't need a corporate budget to achieve immutability. Here are the best ways for home users and small businesses to create an unhackable "Air Gap."

Option 1: The "Cold" Hard Drive

The simplest air gap. Buy a high-capacity external HDD. Run your backup. Unplug it. Ransomware cannot hack a cable that isn't connected.

Compare Best External HDDs →
Option 2: Object Lock (S3)

Use cloud storage (like Backblaze B2 or AWS S3) with "Object Lock" enabled. This sets a flag saying "Do not allow deletion for 30 days". Even if a hacker gets your password, they cannot delete the files.

Recommended Hardware for your Local Backup

For your local copies (the "2" in 3-2-1), reliability is key. We recommend CMR drives over SMR for faster recovery speeds.

Drive ModelBest ForCapacity
WD Red ProNAS / 24/7 Uptime4TB - 22TB
Seagate IronWolf ProHeavy Workloads4TB - 24TB
WD Elements (External)Cold / Offline BackupUp to 22TB

Practical Example: A Home User Setup

You don't need enterprise hardware to implement a solid 3-2-1-1-0 strategy. Here's a realistic setup for a home user protecting photos, documents, and work files:

1
Primary copy — your main PC/laptop

Your working files live here. An internal NVMe SSD is ideal for performance and reliability.

2
Local backup — a NAS device at home

A 2-bay NAS (e.g., Synology DS223) with two WD Red or Seagate IronWolf drives provides automatic nightly backups and RAID redundancy. This is your second copy on a different medium.

3
Offsite copy — cloud storage

Backblaze Personal Backup (~£7/month) or iDrive automatically backs up to an offsite data centre. This satisfies the "1 offsite" requirement.

+1
Immutable copy — a disconnected external HDD

Once a month, plug in a large external HDD (e.g., 4TB WD Elements), copy your most critical files, then unplug it and store it in a drawer. Ransomware cannot reach a physically disconnected drive.

0
Zero errors — verify your backups quarterly

Every three months, attempt an actual restore of 2–3 random files from each backup location. If it works, you know it will work when you need it most.

Common Backup Mistakes to Avoid

Treating cloud sync as a backup

Dropbox, OneDrive, and Google Drive sync your files — they don't back them up independently. If ransomware encrypts your PC, the encrypted versions sync to the cloud within minutes, overwriting your clean copies.

Never testing the restore

A backup you've never restored from is an assumption, not a safety net. Test a restore at least once a year — ideally quarterly.

Keeping the external drive permanently plugged in

An always-connected external drive is just another target for ransomware. Disconnect it after each backup session to create a genuine air gap.

Backing up only documents, not the whole system

Don't forget to include emails, browser bookmarks, password manager exports, software licence keys, and photos stored in app libraries. These are often overlooked until it's too late.

Using the same password everywhere in your backup chain

If one account is compromised, attackers can access your cloud backup too. Use a unique, strong password for your cloud backup service, stored in a password manager.

Secure Your Data Today

Don't wait for a crash or a hack. Hard drives are cheap; your data is priceless. Start by finding the right drive for your offline backup.

Compare HDD Prices Now