Close Menu
Westside People
    Facebook X (Twitter) Instagram
    Westside People
    Subscribe
    • Home
    • Top News
    • World
    • Economy
    • science
    • Tech
    • sport
    • entertainment
    • Contact Form
    Westside People
    Home»Tech»Microsoft’s recall feature is more hackable than you thought
    Tech

    Microsoft’s recall feature is more hackable than you thought

    Avery KensingtonBy Avery KensingtonJune 7, 2024No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Email
    Microsoft’s recall feature is more hackable than you thought
    Share
    Facebook Twitter Pinterest Reddit WhatsApp Email

    Microsoft CEO Satya Nadella praised the company’s new recall feature, which stores the history of your computer’s desktop and makes it available for artificial intelligence to analyze, as a “photographic memory” of your computer. Meanwhile, within the cybersecurity community, the idea of ​​a tool that silently takes a screenshot of your desktop every five seconds has been hailed as a hacker’s dream come true and the worst product idea in recent memory.

    Now, security researchers have pointed out that even the only remaining security safeguard meant to protect this feature from exploitation could be trivially defeated.

    Since Recall was first announced last month, the cybersecurity world has pointed out that if a hacker can install malware to gain a foothold on a targeted device with the feature enabled, they can quickly access the entire user history stored by the function. The only obstacle to this high-resolution view of a victim’s entire life in front of a keyboard appears to be that accessing Recall data requires administrator privileges on the user’s device. This means that malware without top-level privilege will trigger a permission pop-up, allowing users to deny access, and this malware will also likely be blocked by default from accessing data on most corporate devices.

    Then James Forshaw, a researcher on Google’s Project Zero vulnerability research team, posted on Wednesday Update to a blog post Pointing out that he found ways to access the recall data without Administrator privileges – essentially stripping away even the last fig leaf of protection. “No admin required ;-)” the post ended.

    “Damn” Forsho Added on Mastodon. “I really thought the security of the summon database would be at least secure.”

    Forshaw’s blog post described two different ways to bypass administrator privilege requirements, both of which exploit ways to circumvent a core security function in Windows known as access control lists that specify which items on the computer require privileges to read and modify. One Forshaw method exploits an exception to these control menus, temporarily impersonating a program on Windows machines called AIXHost.exe that can access even restricted databases. There’s another, simpler way: Forshaw points out that because the recall data stored on the device is considered the property of the user, a hacker with the same privileges as the user could simply rewrite the access control lists on the target device to give themselves access to the full database. .

    This second, simpler bypass technique is “pretty amazing, frankly,” says Alex Hagina, a cybersecurity strategist and ethical hacker. Hagenah recently built a proof-of-concept hacking tool called TotalRecall designed to show that someone who gained access to a victim’s device using Recall could instantly pull all user history recorded by the feature. However, Hagina’s tool still requires hackers to find another way to gain administrator privileges through a so-called “privilege escalation” technique before its tool can work.

    With Forshow’s technology, “You don’t need any privilege escalation, no pop-ups, nothing,” Hagina says. “It would make sense to implement this in the tool for a bad guy.”

    Avery Kensington
    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Email
    Previous ArticleFirst meeting after judgment | Trump lashes out at Biden and immigration
    Next Article Coco Gauff calls for video review system in tennis after controversial decision during French Open defeat to Iga Świątek

    Related Posts

    Android May Expand Its Edge Over iOS With New “Notification Rules” Feature

    April 3, 2026

    Google Prepares Screenless Fitbit Band to Challenge Whoop and Oura

    April 1, 2026

    Android Malware Steals Payment Card Data Using Never-Before-Seen Technique

    August 24, 2024

    Amazon is killing off a key feature on its $160 Echo after one year

    August 23, 2024

    Animal Crossing: Pocket Camp Will End Online Service in November

    August 23, 2024

    The new and improved Alienware m16 RTX 4070 Gaming laptop is down to $1,350 with the discount coupon

    August 23, 2024
    Add A Comment
    Leave A Reply Cancel Reply

    Navigate
    • Home
    • Top News
    • World
    • Economy
    • science
    • Tech
    • sport
    • entertainment
    • Contact Form
    Pages
    • Home
    • Privacy Policy
    • Editorial Policy
    • DMCA
    • About Us
    Facebook X (Twitter) Instagram Pinterest
    © © 2026 WestsidePeopleMag.com. Independent stories, culture, and community coverage. All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.