Welp, I knew Microsoft's CoPilot+ Recall was going to be a privacy disaster but I didn't expect it to turn into an enterprise computing catastrophe for Microsoft *quite* this fast!

But this can't be a one-off. Any large enterprise that has to comply with a regulated privacy environment—HIPAA in the USA, GDPR in the EU, banking/insurance/finance globally—must be considering a ban on Microsoft installations on laptop/desktop computers right now or be breaking the law.

https://infosec.exchange/@SecurityWriter/112558224281615019

Security Writer :verified: :donor: (@[email protected])

If you’re wondering how the Microsoft Recall scandal is going, I’ve just had a client tell me they’ve replaced their order for 10k Microsoft Surfaces with new MacBook Airs, at nearly twice the cost, and that we need to start the ongoing 6 month endpoint security project over.

Infosec Exchange
@cstross We always are one major release behind on Windows to be able to parry shit, but this will be bad in a year unless something is done before.
@WhyNotZoidberg @cstross When I was at the Department of National Defence in Canada, we had to check 4,000 applications (including databases) against every major update. It was a big task.
@dan613 @cstross We only have 300ish, but at least the most important ones (except for MS Office of course) are developed in house.