A new test shows Microsoft Recall’s continued security problems

Date:

Share:


Microsoft is currently previewing its latest version of Recall to Windows Insiders on Snapdragon-, Intel-, and AMD-based Copilot+ PCs — and the topic on most users’ minds is security. The company updated its security and privacy architecture for the feature in September, but, according to tests run by Tom’s Hardware, it still might not be good enough.

The new version of Recall includes a sensitive information filter that’s supposed to detect when there’s information like credit card numbers and Social Security numbers on the screen. If it detects them, it will avoid taking a screenshot. When Tom’s Hardware put this filter to the test, however, it failed in a number of situations.

It seems that right now at least, Recall is best at detecting standard checkout pages where people input their payment details — and as for everything else, it’s not very good. Recall captured card numbers and passwords typed into a Notepad window, Social Security information on a PDF loan application, and payment info typed into a simple HTML page.

Tom’s Hardware

Granted, these tests were designed to push the limits — but the filter probably ought to work in more than a single situation. Microsoft made sure not to promise any particular results, however. Its blog post on the updated architecture simply says the sensitive content filtering “helps reduce” the number of passwords, national ID numbers, and credit card numbers being stored in Recall.

In response to the Tom’s Hardware tests, the company pointed out that it plans to “improve this functionality” and encourages people to send examples to the Feedback Hub. Because the discourse around Recall is all about security, there really is no room for mistakes.

If you’re going to make a feature that screenshots everything everyone does on their PCs, you’ve got to make it airtight. We’ll see in the coming weeks if Recall’s encryption and everything going on under the hood is as secure as Microsoft claims it is. Hopefully, the company can get things sorted before its time for the larger rollout.








Source link

━ more like this

Apple makes the M5 MacBook Pro’s battery ever so slightly easier to replace

Just like a minor upgrade in specs, Apple's latest M5 MacBook Pro gets the slightest improvement when it comes to repairability. According to...

Putin’s nuclear weapons positioned close to NATO in ‘preparation for war’ – London Business News | Londonlovesbusiness.com

Norway’s Defence Minister Tore Sandvik has warned Vladimir Putin has positioned hi nuclear fleet miles from NATO’s border in “preparation for war.” Sandvik warned...

How to cancel your Spotify subscription

Spotify recently came under fire for running recruitment ads for ICE, which ask users to "join the mission to protect America" and to...

NASA adds 3I/Atlas to an official watchlist as a ‘planetary threat’ – London Business News | Londonlovesbusiness.com

NASA has added 3I/Atlas to the International Asteroid Warning Network (IAWN) which comprises of world-wide astronomers and space agencies and have described the...

How to unpair your Apple Watch from your iPhone

If you’re moving on to a new Apple Watch, selling your current one or fixing some software hiccups, you’ll probably need to disconnect...
spot_img