{"id":6064,"date":"2024-11-01T16:20:28","date_gmt":"2024-11-01T21:20:28","guid":{"rendered":"https:\/\/www.darkreading.com\/application-security\/privacy-anxiety-pushes-microsoft-recall-release-again"},"modified":"2024-11-01T16:20:28","modified_gmt":"2024-11-01T21:20:28","slug":"privacy-anxiety-pushes-microsoft-recall-ai-release-again","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/11\/01\/privacy-anxiety-pushes-microsoft-recall-ai-release-again\/","title":{"rendered":"Privacy Anxiety Pushes Microsoft Recall AI Release Again"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/blt19fd31bcae395c10\/67251e93e9dd5b9a06eb2aa3\/Copilot_GK_images_Alamy.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Microsoft has made the decision to once again delay the release of its new artificial Intelligence tool, Recall, while the company works through trying to make sure all of the handy data it delivers can&#8217;t be abused by adversaries.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The Recall tool will be part of the suite of services delivered through Microsoft&#8217;s AI Assistant software, Copilot+. Recall&#8217;s job, once it&#8217;s rolled out, will be to gather &#8220;snapshots&#8221; of each action on the PC to be accessible later through an easy search. The software will be able to &#8220;recall&#8221; the exact moment the user saw a website, used an app, or interacted with a document.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Compelling use cases aside, information security professionals have <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/data-privacy\/microsofts-recall-feature-draws-criticism-from-privacy-advocates\" rel=\"noopener\">balked at Recall&#8217;s ability to keep its snapshots secure<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> from would-be threat actors. For its part, Microsoft has taken these cybersecurity concerns seriously. In June, Microsoft announced it had added new <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/application-security\/microsoft-modifies-recall-ai-feature-privacy-security-failings\" rel=\"noopener\">privacy and security features to Recall<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> just days ahead of its intended rollout date. That release was ultimately pushed back to October in order to take extra steps to shore up the tool&#8217;s security. Now, the release date has been pushed back again.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We are committed to delivering a secure and trusted experience with Recall,&#8221; according to a statement about the delay from Brandon LeBlanc, senior product manager for Windows. &#8220;To ensure we deliver on these important updates, we\u2019re taking additional time to refine the experience before previewing it with Windows Insiders. Originally planned for October, Recall will now be available for preview with Windows Insiders on Copilot+ PCs by December.&#8221;<\/span><\/p>\n<p data-component=\"related-article\" class=\"RelatedArticle\"><span data-testid=\"related-article-title\" class=\"RelatedArticle-Title\">Related:<\/span><a class=\"RelatedArticle-RelatedContent\" data-discover=\"true\" href=\"https:\/\/www.darkreading.com\/application-security\/hacking-microsoft-copilot-is-scary-easy-news-desk-black-hat-2024\" target=\"_self\" rel=\"noopener\">News Desk 2024: Hacking Microsoft Copilot Is Scary Easy<\/a><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Microsoft Pledges to Secure Recall\">Microsoft Pledges to Secure Recall<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">In late September, David Weston, Microsoft&#8217;s vice president of enterprise and OS security, detailed the company&#8217;s commitment to the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/blogs.windows.com\/windowsexperience\/2024\/09\/27\/update-on-recall-security-and-privacy-architecture\/\" rel=\"noopener\">security of Recall data,<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> stressing the tool is opt-in only, encrypted, and includes malware protection; and, its data is protected in a virtualization-based security (VBS) enclave inaccessible by even admin and kernel users without biometric authentication.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;Using VBS Enclaves with Windows Hello enhanced sign-in security allows data to be briefly decrypted while you use the Recall feature to search. Authorization will time out and require the user to authorize access for future sessions,&#8221; Weston wrote. &#8220;This restricts attempts by latent malware trying to &#8216;ride along&#8217; with a user authentication to steal data.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Weston further assured those concerned about Recall&#8217;s security that: in-private browsing information is never saved by Recall; users have an option to filter out specific sites or apps from Recall recording; content filtering keeps data like credit card and Social Security numbers from being stored; users can delete stored information by date, content, app, or website; and an icon clearly shows when snapshots are being saved, so users can easily pause the function.<\/span><\/p>\n<p data-component=\"related-article\" class=\"RelatedArticle\"><span data-testid=\"related-article-title\" class=\"RelatedArticle-Title\">Related:<\/span><a class=\"RelatedArticle-RelatedContent\" data-discover=\"true\" href=\"https:\/\/www.darkreading.com\/application-security\/cybersecurity-job-market-stagnates-dissatisfaction-abounds\" target=\"_self\" rel=\"noopener\">Cybersecurity Job Market Stagnates, Dissatisfaction Abounds<\/a><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;Recall\u2019s secure design and implementation provides a robust set of controls against known threats,&#8221; Weston added. &#8220;Microsoft is committed to making the power of AI available to everyone, while retaining security and privacy against even the most sophisticated attacks.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Is Microsoft Eyeing Claude's 'Computer Use' Feature?\">Is Microsoft Eyeing Claude&#8217;s &#8216;Computer Use&#8217; Feature?<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">It appears Microsoft is taking the warnings from the cybersecurity community about Recall&#8217;s potential business risks seriously, Bugcrowd founder Casey Ellis tells Dark Reading. Redmond might also have its eye on a recent release of a similar tool in Anthropic&#8217;s Claude AI before rolling out Recall, he adds.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;After the initial reaction to Recall \u2014 and some of the security and privacy concerns raised by how it was implemented \u2014 Microsoft appears to be hastening slowly here,&#8221; Ellis says. &#8220;I wouldn\u2019t be surprised if they\u2019re taking the opportunity to learn from how the market responds to and uses Anthropic\u2019s &#8216;computer use&#8217; feature, which is very similar to Recall from a privacy, security, and functionality standpoint.&#8221;<\/span><\/p>\n<p data-component=\"related-article\" class=\"RelatedArticle\"><span data-testid=\"related-article-title\" class=\"RelatedArticle-Title\">Related:<\/span><a class=\"RelatedArticle-RelatedContent\" data-discover=\"true\" href=\"https:\/\/www.darkreading.com\/application-security\/noma-launches-secure-data-ai-lifecycle\" target=\"_self\" rel=\"noopener\">Noma Launches With Plans to Secure Data, AI Life Cycle<\/a><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Released just days ago, the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.anthropic.com\/news\/developing-computer-use\" rel=\"noopener\">computer use feature<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> allows the latest version of Claude to interact with a computer in the same way as a human. Claude&#8217;s new feature, like Recall, ingests screenshots from Internet-connected computers. And in its Oct. 22 announcement of the release, Anthropic admitted the tool does indeed come with inherent cybersecurity risks.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;In this spirit, our Trust &amp; Safety teams have conducted extensive analysis of our new computer-use models to identify potential vulnerabilities,&#8221; the release announcement said. &#8220;One concern they&#8217;ve identified is <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/ai-chatbots-ditch-guardrails-deceptive-delight-cocktail\" rel=\"noopener\">prompt injection \u2014 a type of cyberattack<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> where malicious instructions are fed to an AI model, causing it to either override its prior directions or perform unintended actions that deviate from the user&#8217;s original intent.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Anthropic added that it hopes to work out this and other issues in its public beta phase, which will certainly be of keen interest to Microsoft as it works through its Recall release.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Claude, according to Anthropic, will not use this user-submitted data to train its own AI model. But when it comes to Microsoft, security consultant John Bambenek isn&#8217;t so sure Recall will adhere to the same standard.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;AI systems require tons of data, which means Microsoft wants all the data on how users are interacting with their computers,&#8221; Bambenek says. &#8220;I am not sure the feature is terribly useful for end users, however, it certainly is for <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/top-lessons-cisos-owasp-llm-top-10\" rel=\"noopener\">training future models<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">. It has enormous privacy implications, so hopefully the delay is useful in terms of minimizing the risks and potential harms to end users.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">While Microsoft security teams and Anthropic&#8217;s Claude feature testing move forward, Patrick Harr, CEO of SlashNext Email Security, warns these tools remain vulnerable to cyberattack.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We continually see phishing and socially engineered attacks from professional groups, mimicking support staff that target company users either through email, other messaging apps, or even bot calls to provide remote access to their desktops,&#8221; Harr says. &#8220;Once accessed into Recall, the threat actors have perfect timeline and information about that user that can be exploited. Proceed with caution until this update is done.&#8221;<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/application-security\/privacy-anxiety-pushes-microsoft-recall-release-again\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft has made the decision to once again delay the<\/p>\n","protected":false},"author":12,"featured_media":6065,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-6064","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=2408%2C1312&ssl=1",2408,1312,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=300%2C163&ssl=1",300,163,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=640%2C348&ssl=1",640,348,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=640%2C349&ssl=1",640,349,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=1536%2C837&ssl=1",1536,837,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=2048%2C1116&ssl=1",2048,1116,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=1024%2C558&ssl=1",1024,558,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/11\/privacy-anxiety-pushes-microsoft-recall-ai-release-again.jpg?fit=2408%2C1312&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/6064","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=6064"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/6064\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/6065"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=6064"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=6064"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=6064"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}