ended4월 17일· 1 sources

윈도우 리콜 보안 개편에도 데이터 탈취 가능…연구자 ‘설계 결함’ 지적

Why it matters

Microsoft's Windows Recall remains vulnerable to data exfiltration despite security redesigns, as researcher Alexander Hagena demonstrates that malware in user context can extract all captured data without requiring administrator privileges or kernel exploits. The vulnerability lies not in encryption itself, but in how decrypted plaintext is processed in unprotected processes—a design flaw Microsoft claims is intentional. This reveals a critical gap between strong encryption and truly secure end-to-end data handling, with real risks for targeted attacks on Copilot+ PC users.

1
Sources
+0
24h
Growth
157d
Active
Windows RecallData exfiltrationDesign flawCopilot+ PCEncryption vulnerability

Sources

Related Issues