Categories: Tech

“Microsoft Should Recall Windows Recall” — Security Researcher Finds Microsoft’s New AI Tool Is Sadly Insecure

What do you want to know

  • Microsoft plans to roll out a new AI feature called “Windows Recall” to new Windows 11 Copilot+ PCs this month.
  • The feature remembers everything you’ve done on your computer and lets you find items using semantic search.
  • Recall stores everything locally on the device, but it appears that the data is not encrypted when the user is logged into the computer.

Microsoft has faced a lot of backlash regarding its new Windows Recall AI feature since its unveiling on May 20. The AI ​​tool, which will ship to new Windows 11 Copilot+ PCs later this month, is designed to capture everything you do on your computer. computer and use AI to index that content into semantically searchable snapshots.

When the feature was revealed, Microsoft promised security. The data collected by Recall is stored on the device, “encrypted” using Bitlocker, and is never sent to Microsoft or advertisers. Users are free to turn off the reminder or, if they choose to use it, delete all snapshots at any time.

However, it seems that all is not as it seems. While it’s true that Windows Recall doesn’t send any data to the cloud, the data it stores locally on your machine isn’t very well secured. Security researcher Kevin Beaumount documented his findings on Windows Recall and revealed that the tool stores its data in an SQLite plain text database.

This means that the data is readable and not encrypted when the user is connected to their computer. The only time data is encrypted is when the PC is not connected. So while this protects against someone accessing your data on a stolen laptop, it doesn’t prevent potential malware designed to grab data from Recall while the user is logged in.

Reminder will capture screenshots of your screen. (Image credit: Windows Central)

Microsoft has done the bare minimum to protect this data. It is stored in a system directory which requires administrator and system level rights to access and modify it. However, these protections are easily bypassed and an attacker could easily write software to override these permissions if they wanted.

Windows Central had contacted Microsoft for comment on these findings regarding Windows Recall, but the company did not respond in time for publication.

Aside from these security issues, Windows Recall appears to work exactly as promised. I’ve been using this feature for the past few days and it works really impressive. It’s able to find images and text with vague search phrases, and I was impressed with its ability to do so.

Unfortunately, for users to truly trust this tool, Microsoft will need to do the work necessary to secure the data it collects locally on your PC. Although it is unlikely that you will ever encounter malware designed to recover Windows Recall data, it is not impossible and so it is best to encrypt this data for added peace of mind.

When Windows Recall collects data, a permanent icon is placed on the taskbar. (Image credit: Windows Central)

That said, I find the outrage over this discovery somewhat exaggerated. Not all of your files are encrypted when you use your PC, but most people don’t constantly worry about malware potentially deleting their personal documents, images, downloads, videos, and synced cloud folders.

While the fact that Microsoft has built into Windows a tool that puts everything you do into a convenient directory for attackers to exploit isn’t great, it’s important to remember that Windows Recall is entirely optional . You do not have to use it if you do not want to, and if you choose not to, the service will not work. If you’re worried about it potentially being activated secretly in the background, Microsoft has built in security measures to prevent this. If Recall captures data, a permanent visual indicator will be placed on the taskbar to let you know.

Additionally, the feature is only available on new Copilot+ PCs. It won’t be available on existing Windows 11 installations, which could be reason enough for many not to upgrade their devices anytime soon.

Hopefully, Microsoft can update Windows Recall to encrypt the data it collects in the future.

News Source : www.windowscentral.com
Gn tech

Eleon

Recent Posts

Thousands of Israeli protesters demand agreement on hostage release

Thousands of Israeli protesters demand deal on hostage release - CBS News Watch CBS News Thousands of Israeli protesters took…

2 mins ago

Ashley Tisdale Welcomes Second Baby With Husband Christopher French

Ashley Tisdale rises to the top of motherhood. THE The High School Musical Former student welcomes second child with husband…

3 mins ago

What is Lee Carsley’s current situation with England and who could replace Gareth Southgate permanently?

Gareth Southgate's reign over England is over and Lee Carsley is set to begin his spell as caretaker boss of…

7 mins ago

Australian doubles stars Jordan Thompson and Max Purcell win US Open for first time in 28 years

Jordan Thompson and Max Purcell win US Open The duo are the first Australians to do so since the Woodies…

9 mins ago

Irish crushed by Huskies 16-14

Irish crushed by Huskies 16-14 Irish crushed by Huskies 16-14 Irish crushed by Huskies 16-14 SOUTH BEND, Ind. (AP) —…

10 mins ago

Several people shot along Kentucky highway, suspect on the run

Police identified the suspect as Joseph A CouchWashington, United States: Kentucky police reported an "active shooter situation" Saturday night near…

13 mins ago