The artificial intelligence feature on new PCs will be off by default

The Verge

Microsoft said an artificial intelligence feature on new PCs that captures screenshots and enables searching of user activity will be off by default after security researchers determined that attackers could access the underlying data.
The Recall feature was one of the main capabilities Microsoft showed during a press briefing last month for forthcoming Copilot+ PCs with AI computing power onboard.
Microsoft has already added the Copilot conversational chatbot into Windows in a way that resembles OpenAI’s popular ChatGPT.
Both ChatGPT and Copilot rely on servers in the cloud to perform necessary computations and then send back responses to PCs.
After Microsoft announced Recall, which can search through a log of previous actions on PCs, industry experts began questioning the potential for hackers to retrieve users’ information.
Security practitioners released software called Total Recall that displays data Recall collects.
They expressed concern about attackers developing tools that can look for usernames and passwords contained in Recall screenshots.
Microsoft is adding security protections to Recall in addition to requiring people to manually turn it on once Copilot+ PCs become available on June 18.


After security researchers discovered that attackers could access the underlying data, Microsoft announced that an artificial intelligence feature on new PCs that takes screenshots and allows searching of user activity will be turned off by default.

Microsoft highlighted the Recall feature as one of the key features of the upcoming Copilot+ PCs with AI computing power onboard last month during a press briefing.

According to a blog post published on Friday by Microsoft’s head of Windows and Surface devices, Pavan Davuluri, “if you don’t proactively choose to turn it on, it will be off by default.”.

As it works to add new generative AI tools into its products and stay competitive, Microsoft has recently been attempting to strike a balance between competing interests. User security and privacy are being closely monitored even though the market is changing quickly. An U. s. Microsoft’s response to China’s violation of U.S. law has been questioned by a government review board. S. Email addresses of public servants.

A conversational chatbot similar to OpenAI’s well-known ChatGPT, Microsoft has already integrated Copilot into Windows. Pieces Recall is distinct in that it retains data on users’ computers and does not require access to additional processing power over the internet. ChatGPT and Copilot both rely on servers in the cloud to carry out necessary computations and then send back responses to parts.

Microsoft CEO Satya Nadella announced changes to the company’s security procedures in the wake of the U.S. S. government analysis.

Industry insiders started to wonder if hackers might be able to obtain user data after Microsoft unveiled Recall, a feature that allows users to search through a history of past actions on PCs.

Security experts published software called Total Recall, which shows the data that Recall gathers.

“Though the screenshots are simply saved in a folder on your PC, Windows Recall stores everything locally in an unencrypted SQLite database,” the developers stated in their GitHub description of Total Recall. They voiced concern over hackers creating instruments to search through Recall screenshots for usernames and passwords.

On June 18, when Copilot+ PCs are made available, Microsoft is not only making Recall manually activateable but also enhancing its security features. Microsoft stated that the search index database will be encrypted.

According to Davuluri, “Windows Hello enrollment is required to enable Recall.”. Furthermore, in order to view your timeline and conduct searches in Recall, proof of presence is also needed. “.

Users can verify their identity with Windows Hello by entering a PIN, putting their face up to the computer’s camera, or giving a fingerprint.

scroll to top