If so, how is that excusable for a company like Microsoft? I'd say even a weekend hackathon project would implement more security than that?
If so, how is that excusable for a company like Microsoft? I'd say even a weekend hackathon project would implement more security than that?
> Snapshots are encrypted by Device Encryption or BitLocker, which are enabled by default on Windows 11. Recall doesn't share snapshots with other users that are signed into Windows on the same device. Microsoft can't access or view the snapshots.
You can delete your snapshots at any time by going to Settings > Privacy & security > Recall & snapshots on your PC.
source: https://support.microsoft.com/en-us/windows/privacy-and-cont...
----------
Q. So how does it work?
A. Every few seconds, screenshots are taken. These are automatically OCR’d by Azure AI, running on your device, and written into an SQLite database in the user’s folder.
This database file has a record of everything you’ve ever viewed on your PC in plain text. OCR is a process of looking an image, and extracting the letters.
Q. How do you obtain the database files?
A. They’re just files in AppData, in the new CoreAIPlatform folder.
Q. But it’s highly encrypted and nobody can access them, right?!
A. Here’s a few second video of two Microsoft engineers accessing the folder:
https://cyberplace.social/@GossiTheDog/112535509953161486
----------
that's not how you back up an argument with proof. there are no microsoft engineers in that video. i see a laptop. is that from tiktok? how are you taking this guy's word for shit without even thinking? its like 13 seconds taken out of context showing a folder click and authorization (what's even happening here, is this an admin account?)
Hint: it’s usually not by the companies that shipped them.
So youre saying that since there will be vulnerabilities (discovered and hopefully patched quickly) this Is a privacy violation?
If anything what you point out is good, we should all audit the feature on launch. Probably gonna be some good bug bounties here.
For starters:
* Because it's been confirmed and demonstrated by other people too?
* Because Total Recall (https://github.com/xaitax/TotalRecall) is a thing that you can try yourself?
* Because Microsoft's entire response to concerns has basically been "oh it's fine, _trust us_"
And yet..
> Q. So how does it work?
> A. Every few seconds, screenshots are taken. These are automatically OCR’d by Azure AI, running on your device, and written into an SQLite database in the user’s folder.
Heads up, Microsoft runs azure. They likely get it before the local users database does.
by saying this, you are also claiming microsoft has windows 11 backdoored.
and thanks for the heads up, thats news to me.