Microsoft Recall is a Bad Idea - ThreatWire

Sdílet
Vložit
  • čas přidán 30. 06. 2024
  • ⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️
    @endingwithali →
    Twitch: / endingwithali
    Twitter: / endingwithali
    CZcams: / @endingwithali
    Everywhere else: links.ali.dev
    Want to work with Ali? endingwithalicollabs@gmail.com
    [❗] Join the Patreon→ / threatwire
    0:00 0 - Intro
    00:11 1 - What is Happening with Ticketmaster
    01:19 2 - Security Breakdown Of Microsoft AI
    04:21 3 - Bricked Routers Source Discovered
    05:53 4 - Outro
    LINKS
    🔗 Story 1: What is Happening with Ticketmaster
    www.sec.gov/Archives/edgar/da...
    itwire.com/business-it-news/s...
    www.securityweek.com/hackers-...
    x.com/vxunderground/status/17...
    🔗 Story 2: Security Breakdown Of Microsoft AI
    blogs.microsoft.com/blog/2024...
    www.theverge.com/2024/6/3/241...
    cyberplace.social/@GossiTheDo...
    doublepulsar.com/recall-steal...
    www.bbc.com/news/articles/cpw...
    🔗 Story 3: Bricked Routers Source Discovered
    www.bleepingcomputer.com/news...
    blog.lumen.com/the-pumpkin-ec...
    -----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆
    Our Site → www.hak5.org
    Shop → hakshop.myshopify.com/
    Community → www.hak5.org/community
    Subscribe → czcams.com/users/Hak5Darr...
    Support → / threatwire
    Contact Us → / hak5
    ____________________________________________
    Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community - where all hackers belong.
  • Věda a technologie

Komentáře • 94

  • @TomNook.
    @TomNook. Před 25 dny +66

    When Big Tech doesn't even try to hide the NSA spyware in their products, and sells it as a feature

  • @cpuuk
    @cpuuk Před 25 dny +23

    Recall: What was it Jeff said in Jurassic Park, "Your scientists were so preoccupied with whether or not they could, they didn't stop to think if they should." Either that or it's the most blatant surveillance tool ever made... I think it's the later, because MS runs from the Marketing Department.

    • @SusanPowers-wj2ow
      @SusanPowers-wj2ow Před 25 dny +2

      So happy I don’t have to type it, took the words out of my mouth.

    • @KJ-xt3yu
      @KJ-xt3yu Před 24 dny

      ​@@SusanPowers-wj2ow🎉 🥰

  • @volvo09
    @volvo09 Před 25 dny +36

    I can't believe they called it "recall"! What isolated group of people thought up that name.

    • @synchro-dentally1965
      @synchro-dentally1965 Před 25 dny +6

      Total Recall was taken. They probably would face bad publicity with that name being false advertising. And the Arnie jokes would be relentless.

    • @Alfred-Neuman
      @Alfred-Neuman Před 25 dny +4

      @@synchro-dentally1965
      When a man goes in to have virtual vacation memories of the planet Mars implanted in his mind, an unexpected and harrowing series of events forces him to go to the planet for real - or is he?

    • @synchro-dentally1965
      @synchro-dentally1965 Před 25 dny +2

      @@Alfred-Neuman Get your A** to Linux!

    • @forsaken1776
      @forsaken1776 Před 25 dny

      You don't think they named it correctly based on the info given in this video? Microsoft is recall all your info whether it's the right person or not is another story🤣

  • @mytechnotalent
    @mytechnotalent Před 25 dny +14

    Recall is literally the most insane idea in this heightened security vulnerable environment.

    • @zicadibrove4119
      @zicadibrove4119 Před 22 dny

      Whats next? Apple spying on people for child porn?

  • @meh.7539
    @meh.7539 Před 25 dny +10

    I do want to see ticketmaster broken. It'll be interesting to see how this plays into the FTC stuff...

  • @stuxed
    @stuxed Před 25 dny +6

    Great work! Thank you for the stories and including Mastodon again :-) Like always I shared these on the Fedi!

  • @carpentb17
    @carpentb17 Před 25 dny +35

    The year of the Linux desktop is fast approaching

    • @tracyrreed
      @tracyrreed Před 25 dny +5

      The Year of the Linux Desktop was 1995, for me.

    • @playerone2424
      @playerone2424 Před 25 dny +4

      Has said every Linux user for the last 30 years.

    • @user-in2cs1vp6o
      @user-in2cs1vp6o Před 25 dny

      ​@@playerone2424Windows 12 announces new features where you have to submit several forms of DNA at every login
      Windows users: I will NEVER use a CLI! Linux sucks! Take my DNA

    • @seansingh4421
      @seansingh4421 Před 25 dny

      Until they fix XRDP and the whole windowing server bullshit, NO way in hell

    • @user-in2cs1vp6o
      @user-in2cs1vp6o Před 25 dny +1

      @seansingh4421 Total skill issue. Look uo remmina

  • @M3G4UK
    @M3G4UK Před 25 dny +20

    AI this AI that. Why are these companies hell bent on putting AI in EVERYTHING?!

    • @volvo09
      @volvo09 Před 25 dny +7

      I hate AI, it's even worse then the "get our crypto token" garbage every company was trying.

    • @LostArchivist
      @LostArchivist Před 25 dny +3

      Because it is a stock boom right now. I.e...blowing bubbles.

    • @dcquence
      @dcquence Před 25 dny +4

      It's the current buzzword. Before it was crypto/blockchain, before that it was quantum, etc...

    • @LostArchivist
      @LostArchivist Před 25 dny

      @@dcquence I mean quantum still is in some circles.

    • @rursus8354
      @rursus8354 Před 24 dny +2

      They aren't. They are trying to make profit on the name "AI" which stands for LLM:s. It's a big hype and the most "AI" companies are trying to reap what a few companies have sowed. There are lots of legit AI:s such as chess-playing machines, gaming AI:s, "machine learning" used in business intelligence, some image recognition applications etcetera. (The Boston Mechanic dogs are Cybernetics rather than AI).

  • @ryansaucerman9727
    @ryansaucerman9727 Před 25 dny +3

    At what point does these data breaches become a Kessler scenario? Maybe we are already there.

  • @Tiki_Media
    @Tiki_Media Před 25 dny +5

    Ali is the software and the payload is her enthusiasm! 😆 Thank you for your infectious delivery...

  • @mikehosken4328
    @mikehosken4328 Před 25 dny +5

    I think AI is over hyped.

    • @KJ-xt3yu
      @KJ-xt3yu Před 24 dny

      unregulated software environment thats default enabled on every new windows device... or potentially every new device...🍿🍿🍿🍿🍿🍿

  • @dingokidneys
    @dingokidneys Před 25 dny +3

    Nice research Ali. You surfaced some great detail that I hadn't heard yet. Everything I hear about Recall just makes it seem more and more Loony Toons.

  • @Secret-Robot
    @Secret-Robot Před 25 dny +3

    Awesome. But yeah, that Microsoft AI thing is a fever-dream nightmare...

  • @IsmaelLa
    @IsmaelLa Před 25 dny +2

    Great episode! Enjoyed it. 😊

  • @seathrunmagaoinghous4119
    @seathrunmagaoinghous4119 Před 25 dny +4

    great job Ali

  • @honestlocksmith5428
    @honestlocksmith5428 Před 25 dny +2

    Recall encrypts the data using the TPM so the operating system can only pull one half the key. The other isn't being bruteforced.
    Malware would have to steal data from memory before encryption and evade detection while doing it.

  • @jpguitaristcomposer
    @jpguitaristcomposer Před 25 dny +2

    Thank's for the report Ali, keep it up :)

  • @kevinwetsch5209
    @kevinwetsch5209 Před 25 dny +4

    So basically don't buy one of these computers, and all the more reason to stay with Linux.

  • @familyplans3788
    @familyplans3788 Před 25 dny +3

    A.I. is for lazy people who dont want to learn, but just to get results on one project at a time

  • @lindhe
    @lindhe Před 24 dny +2

    I hope they recall Recall.

  • @philipm1896
    @philipm1896 Před 23 dny

    What kind of conversations are Microsoft having.
    We want to fill up the hard drive space of the end user with our cctv recording on the end user ?
    Personal invasion computer concept ?

  • @dankatapich
    @dankatapich Před 25 dny +3

    Nice job Ali

  • @geroffmilan3328
    @geroffmilan3328 Před 25 dny +2

    Ummmm, what was that throwaway Intune comment about?
    Citation please.

  • @LeonEdwinsHeart
    @LeonEdwinsHeart Před 25 dny +3

    Thank You

  • @MatthewCallier
    @MatthewCallier Před 25 dny +2

    Love this show. Keep up the great work everyone.

  • @pudelz
    @pudelz Před 25 dny +3

    For the microsoft thing: This is why I only game on Windows... I can't wait until I can totally remove windows!

    • @p5eudo883
      @p5eudo883 Před 24 dny

      I gave up Windows after 7. You get used to having a more limited selection of games. But there's still plenty of great gaming on Linux.

  • @chrisorg170
    @chrisorg170 Před 10 dny

    Damnnnnnn, that's why nether just passed me a new modem/router with near no questions asked 😂. They tried to collect the one I had but now it looks like I'm going to have some firmware fun. Always good stuff Ali

  • @Moist_yet_Crispy
    @Moist_yet_Crispy Před 22 dny

    A fantastic update. Looking forward to more

  • @harrylumsdon6773
    @harrylumsdon6773 Před 25 dny +2

    Thank you.

  • @zeus1141
    @zeus1141 Před 23 dny

    Title is what pushed me to Linux finally a month ago. I dodged all this.

  • @ReiTsukinoVT
    @ReiTsukinoVT Před 23 dny

    Recall is what's pushed me over the edge to migrating to Linux on my home PC and at my desktop support job i'm strongly recommending we don't deploy this update.

  • @jeffme6891
    @jeffme6891 Před 5 dny

    Installed Mint Linux a few weeks ago and rarely boot into W11 anymore. There are still a few things that I need W11 for, so it will remain on a separate SSD until I can finally get rid of it for good.

  • @GrueTurtle
    @GrueTurtle Před 17 dny

    plot twist: Ali has been an AI this whole time

  • @zac2577
    @zac2577 Před 25 dny +1

    its called recall cos they're gonna have to recall it

  • @Dirtyharry70585
    @Dirtyharry70585 Před 20 dny

    Nice seeing your reports. 😘

  • @Daniel-ir4ki
    @Daniel-ir4ki Před 25 dny +7

    It should be called Total Recall

    • @stuxed
      @stuxed Před 25 dny +4

      That's what the data extraction tool is called the dev made haha

  • @iisky1
    @iisky1 Před 12 dny

    Ali needs to surface some new threat information and not resurface old ones.

  • @thesingularity1010
    @thesingularity1010 Před 24 dny

    Amazon Web Services strikes again, or at least poor customisation... why not strong security by default..

  • @garanceadrosehn9691
    @garanceadrosehn9691 Před 24 dny

    I don't fear AI as much as the people who are eager to embrace AI without questioning it at all - such as Microsoft. I suspect that Recall is so poorly thought out because MS is way too eager to be able to say _"See, we do AI too! Give us Money!"._ We're all supposed to be utterly blown away by what the LLM-based AI's can do that we're not allowed to question anything about it. If it requires enormous amounts of energy to run, that's somebody else's problem. If it generates absolutely confident-sounding results which are in fact full of hallucinations (aka "lies'), that's also someone else's problem. If it's used in a "feature" which is a security nightmare that is *turned on by default,* that's also somebody else's problem. The only important thing for these companies is to cash in on the hype around AI as soon as possible.

  • @Well_Edumacated
    @Well_Edumacated Před 25 dny +3

    Google is bad enough but Microsoft is desperately trying to getting their mitts in the data brokerage markets.

  • @colzz1
    @colzz1 Před 25 dny

    Will employers have access?

  • @carsonjamesiv2512
    @carsonjamesiv2512 Před 25 dny +1

    😃

  • @itsdeonlol
    @itsdeonlol Před 25 dny +1

    I hate all of this new AI stuff...

  • @joshhardin666
    @joshhardin666 Před 25 dny +2

    some of the microsoft ai pc stuff is pretty neat (particularly the addition of generative ai to microsoft paint, though I do wish that they would remove all the safegards regarding what ai can generate (it should be able to draw me whatever picture I like based on what I enter, same with the test stuff, particularly if it's running locally on my device). - Recall, however, is a DISASTER! if i'm on my work computer, for example, where my company's admins can already log into my machine at will and exfiltrate any data on the filesystem, I don't want them to be able to dump the plaintext log entries into something like elk/graylog/zabbix and run qutomated queries across the network to see if anyone is watching netflix or youtube videos or whatever while they work because of some outdated ideal that management has about work distraction when really i'm just trying to binge a season of archer on my second display while i'm solving hundreds of trouble tickets for example. not to mention if I want to buy personal items on amazon on my lunch break or whatever. this is some revolting big brother stuff right here.

  • @C.J...
    @C.J... Před 25 dny

    ❤DIMPLES!❤

  • @quillclock
    @quillclock Před 25 dny

    check

  • @johnnywilliams2641
    @johnnywilliams2641 Před 25 dny

    aww my favorite angel with a toch of malware and virtual vd's

  • @rursus8354
    @rursus8354 Před 24 dny

    On the other hand subscribing to Hak5 is a good idea.

  • @nospamallowed4890
    @nospamallowed4890 Před 19 dny

    There is no way to spin Recall as a good thing. It should not just be disabled but it should be totally removed from Windows 11. It is easily the biggest security threat in the IT world.

  • @zicadibrove4119
    @zicadibrove4119 Před 22 dny

    Almost as bad as when Apple used IOS to look for child porn....

  • @afterglow5285
    @afterglow5285 Před 25 dny

    I for one welcome our new AI overlords. If it makes me more efficient, make me watch less porn, and abuse the system for fun and profit. I am all for it.

  • @sargismartirosyan9946
    @sargismartirosyan9946 Před 25 dny +6

    Greqt reason to switch to Linux 😔

  • @tracyrreed
    @tracyrreed Před 25 dny +2

    No more AI written stories please. There is already too much unoriginal machine generated content on CZcams. No AI scripts, no AI voices, etc.

  • @Tech-NO-City
    @Tech-NO-City Před 25 dny +2

    Microshaft, OG Bill Gates uses a microscope and tweezers.

  • @bradycat8044
    @bradycat8044 Před 25 dny +1

    Idk about anyone else but ive been giddy as a schoolgirl to start exploiting recall since microsoft announced its release!

  • @Raima888s
    @Raima888s Před 25 dny +1

    Moving off Windows at home lols

  • @kobki66
    @kobki66 Před 25 dny +6

    windows is dead

  • @ytfeelslikenorthkorea
    @ytfeelslikenorthkorea Před 25 dny +3

    all of those evil companies make me change my way of life. I am removing smart watches from my life, I'm removing Microsoft from my life, as a result, only stuff that works with Wine will last... I am slowly removing myself from apple ecosystem (I just realised that a mere need for a wake up call every morning on an iphone, now requires a consent to Apple tracking my whole effing life!

    • @SeanMurphy00
      @SeanMurphy00 Před 25 dny +2

      Good for you! I did the same thing about 5 years ago and have no regrets. I use the browser on my phone, txt and for phone calls. That’s about it. Stopped using my Apple Watch and try to use cash whenever possible.

    • @ytfeelslikenorthkorea
      @ytfeelslikenorthkorea Před 25 dny

      @@SeanMurphy00 I went for some mountain hike last weekend without a apple watch / garmin watch for the first time since 2016 and has an enlightenment - what a joy of not having a device that turns everything into a competition! I don't need an electronic device to tell me I'm doing all right. I don't need a cloud-based software to count my steps or wake hours. I never used iMessage - I use Signal since its inception for communication with my family and friends, I've made maybe 5 phone calls in the last 10 years. I am done with google, apple and facebook. I am truly done.

  • @BD90..
    @BD90.. Před 25 dny

    Total simp count below: 3.

  • @PONO-go3ee
    @PONO-go3ee Před 25 dny

    Can We preatend that Airplanes in Night Skies like Shooting Stars 💫🌟🐇 I Could Really Use a Wish Right Now

  • @jokingtiger
    @jokingtiger Před 25 dny

    You guys do realize that if your computer is connected to the internet then everyone has your information. The only way to protect your data is to not connect to the internet. That is just the reality. So, if you want to use the internet get used to the idea that your information is already out there. Also, if you do any business anywhere then your information is already out there. You cannot escape this.

  • @jamescrook99
    @jamescrook99 Před 25 dny

    Was just about to click stop on this video as the reporting was shocking & you seemed to be "making a meal of it" then you said the articles were AI written and it all made sense why you where having a hard time with it.

  • @pfitz4881
    @pfitz4881 Před 24 dny

    Microsoft has become adware/spyware/adware.. and you pay for this abuse Linux here I come!

  • @spicesmuggler2452
    @spicesmuggler2452 Před 25 dny

    Mmmmm yes hacking hacks something happened... 👀😍