Artificial Intelligence

Microsoft Bows to Public Pressure, Disables Controversial Windows Recall by Default

Amidst public pressure, Microsoft changes the set-up experience of Copilot+ PCs to disable the controversial Windows Recall feature by default.

Microsoft Copilot attack

Microsoft has bowed to public pressure to turn off its controversial Windows Recall feature by default on Copilot+ PCs.

The feature, widely panned as a security and privacy risk, was turned on by default and required users to go through checkboxes to opt-out of the software that uses AI to create a searchable digital memory of everything ever done on a Windows computer.

Just this week, security researchers documented several ways malware could be designed to steal Windows Recall data and Google Project Zero researcher James Forshaw provided evidence that Windows Recall data is poorly protected on Windows.

As the criticism spread to mainstream media, the software maker reversed course, announcing Friday it would change the set-up experience of Copilot+ PCs to give Windows users “a clearer choice to opt-in to saving snapshots using Recall.”

“If you don’t proactively choose to turn it on, it will be off by default,” the company said in a note published Friday.

Redmond’s software engineers will now require Windows Hello enrollment to enable the Recall feature and “proof of presence” will be required to view and search through screenshots saved in Recall.

Advertisement. Scroll to continue reading.

The company said it will also add additional layers of data protection including “just in time” decryption protected by Windows Hello Enhanced Sign-in Security (ESS) so Recall snapshots will only be decrypted and accessible when the user authenticates. 

“In addition, we encrypted the search index database,” the company added.

Even as it rolled back the on-by-default setup configuration, Microsoft is pushing ahead with marketing the controversial feature, arguing that fine-grained user controls are available to allow users to personally customize how the tool works.

Microsoft insists there is a major security barrier because the screenshots are stored locally on Copilot+ PCs with powerful AI tooling that works on the device itself. 

“No internet or cloud connections are used to store and process snapshots. Recall’s AI processing happens exclusively on your device, and your snapshots are kept safely on your local device only. Your snapshots are yours and they are not used to train the AI on Copilot+ PCs,” the company stressed.

Related: Researchers Show How Malware Could Steal Windows Recall Data

Related: Microsoft’s Windows Recall: Cutting-Edge Search Tech or Creepy Overreach?

Related: Microsoft Overhauls Cybersecurity Strategy After Scathing CSRB Report

Related: Microsoft’s Security Chickens Have Come Home to Roost

Related:Microsoft Hires New CISO in Major Security Shakeup

Related Content

Artificial Intelligence

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority.

Artificial Intelligence

Microsoft agreed to adopt guardrails and privacy standards for its AI in schools, as negotiated with the American Federation of Teachers.

Artificial Intelligence

The Humanist AI Code of Conduct draws a line between defensive cyber research and operational attack capability.

Vulnerabilities

The record-breaking September security update fixes two exploited privilege-escalation zero-days and 20 potentially wormable vulnerabilities.

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

Vulnerabilities

The flaws can be exploited for remote code execution, authentication bypass, and device takeover.

Vulnerabilities

A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version