Sponsored
Displayed for 0 seconds
Displayed for 0 seconds
Displayed for 0 seconds
Displayed for 0 seconds
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • Review
    Sony’s first RGB TV is a statement piece

    Sonys first RGB TV is a statement piece

    The new Razr Ultra isn’t your average phone — for better and worse

    The new Razr Ultra isnt your average phone — for better and worse

    Google’s new anything-to-anything AI model is wild

    Googles new anything-to-anything AI model is wild

    If I could only have one laptop for work and gaming, I’d get this one

    If I could only have one laptop for work and gaming, I’d get this one

    Anker’s new earbuds have the best call quality I’ve ever heard

    Ankers new earbuds have the best call quality Ive ever heard

    This AI guitar pedal let me roll my own effects

    This AI guitar pedal let me roll my own effects

  • Gaming
    Valve raises Steam Deck prices by more than $200

    Valve raises Steam Deck prices by more than $200

    Sony is offering up to 50 percent off some of our favorite PS5 games

    Sony is offering up to 50 percent off some of our favorite PS5 games

    Sony’s DualSense controllers are almost 30 percent off

    Sonys DualSense controllers are almost 30 percent off

    007 First Light is like a James Bond movie in the best way possible

    007 First Light is like a James Bond movie in the best way possible

    The best part of Mina the Hollower is how it randomizes the Zelda formula

    The best part of Mina the Hollower is how it randomizes the Zelda formula

    The Witcher 3 is getting another expansion, more than a decade after launch

    The Witcher 3 is getting another expansion, more than a decade after launch

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    This smart bird feeder captures more of my backyard drama

    This smart bird feeder captures more of my backyard drama

    Apple’s latest MacBook Air is $200 off in both sizes for Memorial Day

    Apples latest MacBook Air is $200 off in both sizes for Memorial Day

    Fujifilm’s X Half is even more whimsical with a $300 price cut

    Fujifilms X Half is even more whimsical with a $300 price cut

    Sony tries to explain that its AI Camera Assistant doesn’t suck

    Sony tries to explain that its AI Camera Assistant doesnt suck

    Dell and RAMageddon are watering down the Alienware brand

    Dell and RAMageddon are watering down the Alienware brand

    Sony ups its new A7R VI to 66.8 megapixels and jumps the price to $4,500

    Sony ups its new A7R VI to 66.8 megapixels and jumps the price to $4,500

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers

    To regain advertiser trust, Facebook is tracking ads by the millisecond

    Google has been asked to take down over a million websites

    Watch Dogs 2 Update Coming This Week, Here’s What It Does

    Fujifilm X-T2 review: The definition of a great camera

    Shopify CEO attempts to defend continued hosting of Breitbart’s online store

    SpaceX targets February 18 for Dragon resupply mission to ISS

  • Applications
    Jony Ive’s Ferrari looks nothing like a Ferrari

    Jony Ives Ferrari looks nothing like a Ferrari

    ‘It’s in the air’: Apple TV’s hottest new shows explore different sides of OnlyFans

    Its in the air: Apple TVs hottest new shows explore different sides of OnlyFans

    Apple’s accessibility features add more AI-powered processing

    Apples accessibility features add more AI-powered processing

    Revamped Siri will reportedly offer auto-deleting chats

    Revamped Siri will reportedly offer auto-deleting chats

    iOS 27 might add a lot more customization to the Camera app

    iOS 27 might add a lot more customization to the Camera app

    Apple brings encrypted RCS chats to iPhone

    Apple brings encrypted RCS chats to iPhone

  • Security

    To regain advertiser trust, Facebook is tracking ads by the millisecond

    National Academy of Sciences endorses embryonic engineering

    Google has been asked to take down over a million websites

    Watch Dogs 2 Update Coming This Week, Here’s What It Does

    The Warby Parker of hair color, Madison Reed, scores new funding and a CMO

    Shopify CEO attempts to defend continued hosting of Breitbart’s online store

No Result
View All Result
  • Home
  • Review
    Sony’s first RGB TV is a statement piece

    Sonys first RGB TV is a statement piece

    The new Razr Ultra isn’t your average phone — for better and worse

    The new Razr Ultra isnt your average phone — for better and worse

    Google’s new anything-to-anything AI model is wild

    Googles new anything-to-anything AI model is wild

    If I could only have one laptop for work and gaming, I’d get this one

    If I could only have one laptop for work and gaming, I’d get this one

    Anker’s new earbuds have the best call quality I’ve ever heard

    Ankers new earbuds have the best call quality Ive ever heard

    This AI guitar pedal let me roll my own effects

    This AI guitar pedal let me roll my own effects

  • Gaming
    Valve raises Steam Deck prices by more than $200

    Valve raises Steam Deck prices by more than $200

    Sony is offering up to 50 percent off some of our favorite PS5 games

    Sony is offering up to 50 percent off some of our favorite PS5 games

    Sony’s DualSense controllers are almost 30 percent off

    Sonys DualSense controllers are almost 30 percent off

    007 First Light is like a James Bond movie in the best way possible

    007 First Light is like a James Bond movie in the best way possible

    The best part of Mina the Hollower is how it randomizes the Zelda formula

    The best part of Mina the Hollower is how it randomizes the Zelda formula

    The Witcher 3 is getting another expansion, more than a decade after launch

    The Witcher 3 is getting another expansion, more than a decade after launch

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    This smart bird feeder captures more of my backyard drama

    This smart bird feeder captures more of my backyard drama

    Apple’s latest MacBook Air is $200 off in both sizes for Memorial Day

    Apples latest MacBook Air is $200 off in both sizes for Memorial Day

    Fujifilm’s X Half is even more whimsical with a $300 price cut

    Fujifilms X Half is even more whimsical with a $300 price cut

    Sony tries to explain that its AI Camera Assistant doesn’t suck

    Sony tries to explain that its AI Camera Assistant doesnt suck

    Dell and RAMageddon are watering down the Alienware brand

    Dell and RAMageddon are watering down the Alienware brand

    Sony ups its new A7R VI to 66.8 megapixels and jumps the price to $4,500

    Sony ups its new A7R VI to 66.8 megapixels and jumps the price to $4,500

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers

    To regain advertiser trust, Facebook is tracking ads by the millisecond

    Google has been asked to take down over a million websites

    Watch Dogs 2 Update Coming This Week, Here’s What It Does

    Fujifilm X-T2 review: The definition of a great camera

    Shopify CEO attempts to defend continued hosting of Breitbart’s online store

    SpaceX targets February 18 for Dragon resupply mission to ISS

  • Applications
    Jony Ive’s Ferrari looks nothing like a Ferrari

    Jony Ives Ferrari looks nothing like a Ferrari

    ‘It’s in the air’: Apple TV’s hottest new shows explore different sides of OnlyFans

    Its in the air: Apple TVs hottest new shows explore different sides of OnlyFans

    Apple’s accessibility features add more AI-powered processing

    Apples accessibility features add more AI-powered processing

    Revamped Siri will reportedly offer auto-deleting chats

    Revamped Siri will reportedly offer auto-deleting chats

    iOS 27 might add a lot more customization to the Camera app

    iOS 27 might add a lot more customization to the Camera app

    Apple brings encrypted RCS chats to iPhone

    Apple brings encrypted RCS chats to iPhone

  • Security

    To regain advertiser trust, Facebook is tracking ads by the millisecond

    National Academy of Sciences endorses embryonic engineering

    Google has been asked to take down over a million websites

    Watch Dogs 2 Update Coming This Week, Here’s What It Does

    The Warby Parker of hair color, Madison Reed, scores new funding and a CMO

    Shopify CEO attempts to defend continued hosting of Breitbart’s online store

No Result
View All Result
The Latest Tech News | Breaking Bews In Thchnology
No Result
View All Result
Home Microsoft

Microsoft faces fresh Windows Recall security concerns

admin by admin
April 16, 2026
Microsoft faces fresh Windows Recall security concerns
Share on FacebookShare on Twitter

When Microsoft tried to launch Recall, an AI-powered Windows feature that screenshots most of what you do on your PC, it was labeled a “disaster” for cybersecurity and a “privacy nightmare.” After the backlash and a year-long delay to redesign and secure Recall, it’s once again facing security and privacy concerns.

Cybersecurity expert Alexander Hagenah has created TotalRecall Reloaded, a tool that extracts and displays data from Recall. It’s an update to the TotalRecall tool that demonstrated all the weaknesses in the original Recall feature before Microsoft redesigned it.

Microsoft’s redesign focused on creating a secure vault for Recall data, with Windows Hello authentication and a secure environment through a Virtualization-based Security Enclave. Recall requires users to authenticate using a face or fingerprint to gain access to data and to enable snapshots to be recorded. “This restricts attempts by latent malware trying to ’ride along’ with a user authentication to steal data,” said Microsoft in a September 2024 blog post.

“My research shows that the vault is real, but the trust boundary ends too early,” says Hagenah. “TotalRecall Reloaded makes that ‘latent malware’ ride along.” The TotalRecall Reloaded tool can silently run in the background and activate the Recall timeline to force a user into authenticating with a Windows Hello prompt. Once the authentication has taken place, TotalRecall Reloaded can then extract everything that Windows Recall has ever captured. “That is precisely the scenario Microsoft’s architecture is supposed to restrict,” says Hagenah.

Recall stores much more than just screenshots, with the history of text that has appeared on your screen, messages, emails, documents, browsing history, and much more. Microsoft’s changes to Recall security came months after CEO Satya Nadella told employees “If you’re faced with the tradeoff between security and another priority, your answer is clear: Do security.”

Hagenah responsibly disclosed his latest findings to Microsoft last month, but the company closed the report and said there was no vulnerability. “We appreciate Alexander Hagenah for identifying and responsibly reporting this issue. After careful investigation, we determined that the access patterns demonstrated are consistent with intended protections and existing controls, and do not represent a bypass of a security boundary or unauthorized access to data,” says David Weston, corporate vice president of Microsoft Security, in a statement to The Verge. “The authorization period has a timeout and anti-hammering protection that limit the impact of malicious queries.”

In messages to The Verge, Hagenah disputes Microsoft’s timeout protections. “I can re-poll the data, and what I am doing in my tool [is] to bypass it. And the timeout is patched out,” says Hagenah. “My biggest issue still is them saying in their official announcement that the enclave prevents ‘latent malware riding along,’ which it clearly doesn’t.”

TotalRecall Reloaded can also extract the latest cached Windows Recall screenshot without Windows Hello authentication, or totally wipe the entire capture history. But the type of malware that Hagenah describes could sit in the background on a PC and take screenshots anyway, with or without Windows Recall.

Microsoft doesn’t think there’s a vulnerability here because this is simply how Windows works. Regular user-mode processes have the ability to inject code into themselves as a normal and often legitimate behavior in Windows, but this flexibility also creates opportunities for abuse.

A similar infostealer malware could sit and extract 1Password data or your browsing history, if it was undetected by the various other Windows security tools and memory protection efforts. The bigger concern is that Recall stores a lot more sensitive data than just passwords or browsing history, and Microsoft’s original promise that Recall would protest against malware riding along in the background.

Despite the concerns, Microsoft got a lot right with its Recall redesign. “The VBS enclave is rock solid,” says Hagenah. “The authentication model is stateless and race-free (thousands of probes, zero bypasses).” Hagenah just thinks Microsoft could, and should, go a step further to meet its security design goals for Recall. “The fundamental problem isn’t the crypto, the enclave, the authentication, or the PPL,” he says. “It’s sending decrypted content to an unprotected process for rendering. The vault door is titanium. The wall next to it is drywall.”

Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

  • Tom Warren

    Tom Warren

    Tom Warren

    Posts from this author will be added to your daily email digest and your homepage feed.

    See All by Tom Warren

  • Microsoft

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Microsoft

  • Report

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Report

  • Tech

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Tech

  • Windows

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Windows

Tags: Microsoft privacy issuesWindows Recall security
admin

admin

Next Post
The new Tomodachi Life is made to be shared — even if Nintendo doesn’t want you to

The new Tomodachi Life is made to be shared — even if Nintendo doesnt want you to

Recommended.

"Massive Cyber Monday Price Cut on Apple's Smallest iPad"

Massive Cyber Monday Price Cut on Apples Smallest iPad

December 1, 2025
"The Disappearance of TV Cameras: Exploring the Shift in Broadcast Technology"

The Disappearance of TV Cameras: Exploring the Shift in Broadcast Technology

November 17, 2025

Trending.

Subnautica 2 is having a huge launch on Steam

Subnautica 2 is having a huge launch on Steam

May 14, 2026
Microsoft starts canceling Claude Code licenses

Microsoft starts canceling Claude Code licenses

May 14, 2026
Metroid Prime 4: Beyond got its first big discount

Metroid Prime 4: Beyond got its first big discount

May 15, 2026
Leaked images show Microsoft’s new Xbox Cloud Gaming controller

Leaked images show Microsofts new Xbox Cloud Gaming controller

May 14, 2026
Razer’s Blade 18 is getting a $500 price hike and a new Intel chip

Razers Blade 18 is getting a $500 price hike and a new Intel chip

May 14, 2026
earmpro tech news

Stay ahead of the tech curve. Our website delivers clear, concise updates on the latest gadgets, AI breakthroughs, and software, empowering your digital future.

Follow Us

  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2025 | Website Made By earmpro.com.

No Result
View All Result
  • Home
  • Review
  • Apple
  • Applications
  • Computers
  • Gaming
  • Gear
    • Audio
    • Camera
    • Smartphone
  • Microsoft
  • Photography
  • Security

© 2025 | Website Made By earmpro.com.