pwshub.com

Microsoft details security/privacy overhaul for Windows Recall ahead of relaunch

An updated onboarding screen for Recall, with clearly visible buttons for opting in or out; Microsoft says Recall will be opt-in by default and can even be removed from PCs entirely.

Enlarge / An updated onboarding screen for Recall, with clearly visible buttons for opting in or out; Microsoft says Recall will be opt-in by default and can even be removed from PCs entirely.

Microsoft

Microsoft is having another whack at its controversial Recall feature for Copilot+ Windows PCs, after the original version crashed and burned amid scrutiny from security researchers and testers over the summer. The former version of Recall recorded screenshots and OCR text of all user activity, and stored it unencrypted on disk where it could easily be accessed by another user on the PC or an attacker with remote access.

The feature was announced in late May, without having gone through any of the public Windows Insider testing that most new Windows features get, and was scheduled to ship on new PCs by June 18; by June 13, the company had delayed it indefinitely to rearchitect it and said that it would be tested through the normal channels before it was rolled out to the public.

Today, Microsoft shared more extensive details on exactly how the security of Recall has been re-architected in a post by Microsoft VP of Enterprise and OS Security David Weston.

More secure, also optional

Enlarge / An abstraction of Recall's new security architecture, which replaces the old, largely nonexistent security architecture.

Microsoft

The broad strokes of today's announcement are similar to the changes Microsoft originally announced for Recall over the summer: that the feature would be opt-in and off-by-default instead of opt-out, that users would need to re-authenticate with Windows Hello before accessing any Recall data, and that locally stored Recall data will be protected with additional encryption.

However, some details show how Microsoft is attempting to placate skeptical users. For instance, Recall can now be removed entirely from a system using the "optional features" settings in Windows (when a similar removal mechanism showed up in a Windows preview earlier this month, Microsoft claimed it was a "bug," but apparently not).

The company is also sharing more about how Windows will protect data locally. All Recall data stored locally, including "snapshots and any associated information in the vector database," will be encrypted at rest with keys stored in your system's TPM; according to the blog post, Recall will only function when BitLocker or Device Encryption is fully enabled. Recall will also require Virtualization-Based Security (VBS) and Hypervisor-Protected Code Integrity (HVCI) enabled; these are features that people sometimes turn off to improve game performance, but Recall will reportedly refuse to work unless they're turned on.

This is because the new Recall operates inside of a VBS enclave, which helps to isolate and secure data in memory from the rest of the system.

"This area acts like a locked box that can only be accessed after permission is granted by the user through Windows Hello," writes Weston. "VBS enclaves offer an isolation boundary from both kernel and administrative users."

Windows doesn't allow any code to run within these enclaves that hasn't been signed by Microsoft, which should lower the risk of exposing Recall data to malware or other rogue applications. Other malware protections new to this version of Recall include "rate-limiting and anti-hammering measures."

Source: arstechnica.com

Related stories
1 week ago - Microsoft says the controversial Recall search feature will only be on Copilot Plus PCs that meet its security standards.
1 month ago - Microsoft applications can become a hacker’s paradise on Apple Macs due to an unpatched vulnerability, but Microsoft doesn’t consider it a big enough threat to fix.
1 month ago - Google has acknowledged a vulnerability with Chrome, which was discovered by Microsoft. Google made an update to the browser to fix it.
1 week ago - AI screengrab service to be opt-in, features encryption, biometrics, enclaves, more Microsoft has revised the Recall feature for its Copilot+ PCs and insists that the self-surveillance system is secure.…
1 month ago - recall reincarnated — Initial Recall preview was lambasted for obvious privacy and security failures. ...
Other stories
48 minutes ago - The self-driving company is also expanding its partnership with Uber. Here's everywhere you can hail a ride and where else Waymo will soon arrive.
48 minutes ago - If you need a new pair of glasses or contacts, you can save up to 30% at GlassesUSA right now and get free shipping.
48 minutes ago - Save 40% on this Anker screen protector for the iPhone 16, thanks to this early Amazon Prime Day deal.
1 hour ago - Western North Carolina, and parts of South Carolina, Georgia and Tennessee have been devastated by Hurricane Helene. Here's how you can help.
2 hours ago - There are a handful of ways you can make your tech experience less annoying, including through fixing autocorrect, turning off certain notifications and by creating folders on your iPhone.