I don't doubt that Windows collects and transmits telemetry data (hell, text editors do that nowadays), but if an analysis of that exists, it is not in this article.
I don't doubt that Windows collects and transmits telemetry data (hell, text editors do that nowadays), but if an analysis of that exists, it is not in this article.
Such an analysis does not exist because that traffic is encrypted. Which is also the reason why using Windows 10/11 is not fully compliant with EU privacy laws in places like Germany, as there is no telling what Windows is actually phoning home.
Officially Windows 10/11 can be used but only after jumping through a lot of hoops that involve turning off the telemtry and phoning home, but even then only with an "acceptable residual risk" [0]
The only reason this isn't a bigger topic is because there is no realistic alternative; Everything is tailored to MS, and MS spends absurd amounts of money and effort to prevent anything from changing that.
So the majority just goes with the "easiest" and most convenient solution, even when it might actullay be an "illegal" solution that enables a ton of industrial espionage.
[0] https://www.heise.de/news/Datenschutzkonferenz-Hohe-Huerden-...
... by software that resides on the same system, with keys that are in memory on the same system.
I'm not saying it's trivial to decrypt the traffic, but it's certainly possible, and much, much harder reverse engineering is routinely being performed.
Or MS could simply share the keys with those government institutions there have been literally asking for it, to see wether Windows is actually sending home privacy relevant data.
But the matter of fact is it's a very real issue and still on-going problem.
Just because investing a lot of effort could shed some further light on it does not really change anything about that or the non-compliant behavior MS engages in.
Security only being as good as the effort lobbed at it to break it, is not really a novel or useful insight in this scenario.
What data is sent: https://learn.microsoft.com/en-us/windows/privacy/required-d...
The Diagnostic Data Viewer is a Windows app that lets you review the Windows diagnostic data your device is sending to Microsoft, grouping the info into simple categories based on how it's used by Microsoft. https://learn.microsoft.com/en-us/windows/privacy/diagnostic...
I'm not sure that actually holds — the encryption keys are in memory, but the decryption keys don't necessarily have to be.
The pre-encrypted payloads definitely are in memory at some point; however snatching them probably involves larger-scale reverse-engineering.
Yeah, they might be playing some patty cake protocol /s
(you'd need the Windows kernel debugger and to reboot the thing in developer mode. This is a pretty niche skillset)
What addresses are connected: https://learn.microsoft.com/en-us/windows/privacy/manage-win...
What data is sent: https://learn.microsoft.com/en-us/windows/privacy/required-d...
The Diagnostic Data Viewer is a Windows app that lets you review the Windows diagnostic data your device is sending to Microsoft, grouping the info into simple categories based on how it's used by Microsoft. https://learn.microsoft.com/en-us/windows/privacy/diagnostic...
If you trust Microsoft to not send data you don't want to be sent why worry about telemetry and other potential spyware from them in the first place? You already have trust in them anyway.
But if you do not trust Microsoft to do that, then why trust their claims? They could be collecting a bunch more and if ever found they can claim that it was a bug like a bunch of other companies already did (e.g. HP having keyloggers on their laptops).
(this is also vindicating the "the best way to get correct information on the internet is to post incorrect information"; all the replies could have been top level replies to the OP but weren't)
Is it really? Seems you need to install ~2 packages, flip some switches, edit some files/run some terminal commands, reboot and connect the debugger and you're pretty much setup for it. Seems more like something you need to read an article about, rather than a skillset per se.
Some examples: calls a service that helps companies comply with GDPR "1984" since the analysis is superficial and almost entirely gut reactions to random domains they observed. They have no issue with one CDN they observe but take issue with a Microsoft CDN literally only because they see 'geo' in the sub-domain, when if they'd taken a moment to check it's just used to locate the nearest data center like CDNs do generally.
If the video were instead, 'let's look at what comes pre-installed with Windows 11 [Home, Pro, Education?] that connects online' then it may have been a more informative video. Instead it has a lot of assumptions but little evidence about DNS queries, leaving only casual viewers thinking they've learned something.
>
>I don't doubt that Windows collects and transmits telemetry data (hell, text editors do that nowadays), but if an analysis of that exists, it is not in this article.
Crikey mate; second paragraph, first sentence.
Does Microsoft provide any transparency on what is sent?