For those who aren’t aware, Microsoft have decided to bake essentially an infostealer into base Windows OS and enable by default.

From the Microsoft FAQ: “Note that Recall does not perform content moderation. It will not hide information such as passwords or financial account numbers."

Info is stored locally - but rather than something like Redline stealing your local browser password vault, now they can just steal the last 3 months of everything you’ve typed and viewed in one database.

@GossiTheDog it’s like they got a focus group of cybercriminals together when making this

@jgreig @GossiTheDog @hacks4pancakes "we already found some really big problems fundamental to the idea and here they are. Yes we are absolutely still doing it and it'll be on by default of course.

No, we have no intent to solve any of the problems."