Close Menu
Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Trending Now
Amazon's 'Exquisite'  Quilt Set Comes in 32 Colors and Feels Like 'Sleeping in Clouds'

Amazon's 'Exquisite' $28 Quilt Set Comes in 32 Colors and Feels Like 'Sleeping in Clouds'

16th Apr: Ronaldinho: The One and Only (2026), Limited Series [TV-14] (6/10)

16th Apr: Ronaldinho: The One and Only (2026), Limited Series [TV-14] (6/10)

70-Key Gateway Dirang Announced by IHCL in Arunachal Pradesh, India

70-Key Gateway Dirang Announced by IHCL in Arunachal Pradesh, India

A look at what’s in the news for today

A look at what’s in the news for today

Auditions (Edmonton): Side Effects – Cathexis Theatre, Theater News

Auditions (Edmonton): Side Effects – Cathexis Theatre, Theater News

The New Rivalry Is Even Better (and Bloodier) Than the First

The New Rivalry Is Even Better (and Bloodier) Than the First

Mass Production Array 100% sector walkthrough in Pragmata

Mass Production Array 100% sector walkthrough in Pragmata

Facebook X (Twitter) Instagram
  • Privacy
  • Terms
  • Advertise
  • Contact us
Facebook X (Twitter) Instagram Pinterest Vimeo
Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Newsletter
Canadian ReviewsCanadian Reviews
You are at:Home » Microsoft faces fresh Windows Recall security concerns
Microsoft faces fresh Windows Recall security concerns
Digital World

Microsoft faces fresh Windows Recall security concerns

15 April 20264 Mins Read

When Microsoft tried to launch Recall, an AI-powered Windows feature that screenshots most of what you do on your PC, it was labeled a “disaster” for cybersecurity and a “privacy nightmare.” After the backlash and a year-long delay to redesign and secure Recall, it’s once again facing security and privacy concerns.

Cybersecurity expert Alexander Hagenah has created TotalRecall Reloaded, a tool that extracts and displays data from Recall. It’s an update to the TotalRecall tool that demonstrated all the weaknesses in the original Recall feature before Microsoft redesigned it.

Microsoft’s redesign focused on creating a secure vault for Recall data, with Windows Hello authentication and a secure environment through a Virtualization-based Security Enclave. Recall requires users to authenticate using a face or fingerprint to gain access to data and to enable snapshots to be recorded. “This restricts attempts by latent malware trying to ’ride along’ with a user authentication to steal data,” said Microsoft in a September 2024 blog post.

“My research shows that the vault is real, but the trust boundary ends too early,” says Hagenah. “TotalRecall Reloaded makes that ‘latent malware’ ride along.” The TotalRecall Reloaded tool can silently run in the background and activate the Recall timeline to force a user into authenticating with a Windows Hello prompt. Once the authentication has taken place, TotalRecall Reloaded can then extract everything that Windows Recall has ever captured. “That is precisely the scenario Microsoft’s architecture is supposed to restrict,” says Hagenah.

Recall stores much more than just screenshots, with the history of text that has appeared on your screen, messages, emails, documents, browsing history, and much more. Microsoft’s changes to Recall security came months after CEO Satya Nadella told employees “If you’re faced with the tradeoff between security and another priority, your answer is clear: Do security.”

Hagenah responsibly disclosed his latest findings to Microsoft last month, but the company closed the report and said there was no vulnerability. “We appreciate Alexander Hagenah for identifying and responsibly reporting this issue. After careful investigation, we determined that the access patterns demonstrated are consistent with intended protections and existing controls, and do not represent a bypass of a security boundary or unauthorized access to data,” says David Weston, corporate vice president of Microsoft Security, in a statement to The Verge. “The authorization period has a timeout and anti-hammering protection that limit the impact of malicious queries.”

In messages to The Verge, Hagenah disputes Microsoft’s timeout protections. “I can re-poll the data, and what I am doing in my tool [is] to bypass it. And the timeout is patched out,” says Hagenah. “My biggest issue still is them saying in their official announcement that the enclave prevents ‘latent malware riding along,’ which it clearly doesn’t.”

TotalRecall Reloaded can also extract the latest cached Windows Recall screenshot without Windows Hello authentication, or totally wipe the entire capture history. But the type of malware that Hagenah describes could sit in the background on a PC and take screenshots anyway, with or without Windows Recall.

Microsoft doesn’t think there’s a vulnerability here because this is simply how Windows works. Regular user-mode processes have the ability to inject code into themselves as a normal and often legitimate behavior in Windows, but this flexibility also creates opportunities for abuse.

A similar infostealer malware could sit and extract 1Password data or your browsing history, if it was undetected by the various other Windows security tools and memory protection efforts. The bigger concern is that Recall stores a lot more sensitive data than just passwords or browsing history, and Microsoft’s original promise that Recall would protest against malware riding along in the background.

Despite the concerns, Microsoft got a lot right with its Recall redesign. “The VBS enclave is rock solid,” says Hagenah. “The authentication model is stateless and race-free (thousands of probes, zero bypasses).” Hagenah just thinks Microsoft could, and should, go a step further to meet its security design goals for Recall. “The fundamental problem isn’t the crypto, the enclave, the authentication, or the PPL,” he says. “It’s sending decrypted content to an unprotected process for rendering. The vault door is titanium. The wall next to it is drywall.”

Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

  • Tom Warren

    Tom Warren

    Posts from this author will be added to your daily email digest and your homepage feed.

    See All by Tom Warren

  • Microsoft

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Microsoft

  • Report

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Report

  • Tech

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Tech

  • Windows

    Posts from this topic will be added to your daily email digest and your homepage feed.

    See All Windows

Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email

Related Articles

OpenAI’s big Codex update is a direct shot at Claude Code

OpenAI’s big Codex update is a direct shot at Claude Code

Digital World 17 April 2026
Google’s AI Mode update lets you open links without leaving the page

Google’s AI Mode update lets you open links without leaving the page

Digital World 16 April 2026
Casely has reannounced a power bank recall from 2025 following a fatality

Casely has reannounced a power bank recall from 2025 following a fatality

Digital World 16 April 2026
These startups fight deepfakes by making deepfakes

These startups fight deepfakes by making deepfakes

Digital World 16 April 2026
Netflix embraces vertical video with major mobile app update

Netflix embraces vertical video with major mobile app update

Digital World 16 April 2026
Gucci-branded Google smart glasses are coming next year

Gucci-branded Google smart glasses are coming next year

Digital World 16 April 2026
Top Articles
9 Longest-Lasting Nail Polishes, Tested by Top Manicurists

9 Longest-Lasting Nail Polishes, Tested by Top Manicurists

25 January 2026179 Views
Forbes ranked Canada’s top employers for 2026 and over 30 Quebec companies made the cut

Forbes ranked Canada’s top employers for 2026 and over 30 Quebec companies made the cut

22 January 202699 Views
Canada’s best employers for 2026 were revealed and these are the top companies to work for

Canada’s best employers for 2026 were revealed and these are the top companies to work for

21 January 202698 Views
The Mother May I Story – Chickpea Edition

The Mother May I Story – Chickpea Edition

18 May 202497 Views
Demo
Don't Miss
The New Rivalry Is Even Better (and Bloodier) Than the First
What's On 17 April 2026

The New Rivalry Is Even Better (and Bloodier) Than the First

Beef. Carey Mulligan as Lindsay Crane-Martin in episode 201 of Beef. Cr. Courtesy of Netflix…

Mass Production Array 100% sector walkthrough in Pragmata

Mass Production Array 100% sector walkthrough in Pragmata

Walmart’s 'Melodic'  Butterfly Wind Chime Is a 'Great Mother’s Day Gift'

Walmart’s 'Melodic' $7 Butterfly Wind Chime Is a 'Great Mother’s Day Gift'

16th Apr: Ustaad Bhagat Singh (2026), 2hr 30m [TV-MA] (6/10)

16th Apr: Ustaad Bhagat Singh (2026), 2hr 30m [TV-MA] (6/10)

About Us
About Us

Canadian Reviews is your one-stop website for the latest Canadian trends and things to do, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
Amazon's 'Exquisite'  Quilt Set Comes in 32 Colors and Feels Like 'Sleeping in Clouds'

Amazon's 'Exquisite' $28 Quilt Set Comes in 32 Colors and Feels Like 'Sleeping in Clouds'

16th Apr: Ronaldinho: The One and Only (2026), Limited Series [TV-14] (6/10)

16th Apr: Ronaldinho: The One and Only (2026), Limited Series [TV-14] (6/10)

70-Key Gateway Dirang Announced by IHCL in Arunachal Pradesh, India

70-Key Gateway Dirang Announced by IHCL in Arunachal Pradesh, India

Most Popular
Why You Should Consider Investing with IC Markets

Why You Should Consider Investing with IC Markets

28 April 202429 Views
OANDA Review – Low costs and no deposit requirements

OANDA Review – Low costs and no deposit requirements

28 April 2024362 Views
LearnToTrade: A Comprehensive Look at the Controversial Trading School

LearnToTrade: A Comprehensive Look at the Controversial Trading School

28 April 202476 Views
© 2026 ThemeSphere. Designed by ThemeSphere.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact us

Type above and press Enter to search. Press Esc to cancel.