I used an external USB/eSATA case hooked up via eSATA and then bootet
GRML. The BIOS did not protect the external drive and I was able to
transfer the ATA Secure Command via eSATA. I bet it might not work via USB
tough.
Tough my SSD also reports SECURITY ERASE UNIT, does your HDD have that
too?
merkaba:~> hdparm -I /dev/sda | grep -i erase
supported: enhanced erase
2min for SECURITY ERASE UNIT. 2min for ENHANCED SECURITY ERASE
UNIT.