“Microsoft Should Do Windows Recall” – Security researcher finds Microsoft’s new AI tool woefully insecure

What you need to know

  • Microsoft is planning to launch a new AI feature called Windows Recall on new Windows 11 Copilot+ PCs this month.
  • The feature remembers everything you’ve done on your computer and lets you find things using semantic search.
  • Recall stores everything locally on the device, but it appears that the data is not encrypted when the user is logged in to the computer.

Microsoft has faced a lot of backlash for its new Windows Recall AI feature since it was first revealed on May 20. The AI ​​tool, which will ship to new Windows 11 Copilot+ PCs later this month, is designed to capture everything you do on your computer and use AI to index that content into semantically searchable snapshots.

When the feature was revealed, Microsoft promised security. The data Recall collects is stored on the device, “encrypted” using Bitlocker, and is never sent to Microsoft or advertisers. Users are free to disable Recall, or if they choose to use it, delete any and all photos at any time.

Leave a Comment