Daily Guardian UAEDaily Guardian UAE
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
What's On

I’m still not sold on a disc-less Xbox, but Project Helix feels inevitable now

May 14, 2026

At $4,499, the Sony A7R VI undercuts the A1 II by $2,000, and still matches it at 30fps

May 14, 2026

Assassin’s Creed Hexe leak predicts the return of a legendary hero and I can’t wait for it

May 14, 2026

Qualcomm leak suggests we have entered the ludicrous era of pricey phones

May 14, 2026

I played like a rat in Arc Raiders, and the loot was disgustingly good

May 14, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian UAE
Subscribe
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
Daily Guardian UAEDaily Guardian UAE
Home » Windows Recall still has a side door into your private PC history
Technology

Windows Recall still has a side door into your private PC history

By dailyguardian.aeApril 17, 20263 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Windows Recall was meant to make your PC history easier to search, but a new proof of concept is putting that promise under pressure again.

TotalRecall Reloaded shows how information captured by the Windows 11 feature can still be intercepted after sign in, even after Microsoft overhauled its protections following last year’s backlash.

Recall doesn’t capture a narrow slice of activity. It can preserve a broad visual record of what happens on your PC, including apps, websites, messages, and other on screen content.

Microsoft shifted the feature to opt in use and added encryption plus Windows Hello protection, but the latest findings suggest the weaker point comes after the service is unlocked and starts handing information to another system process.

The weaker link may be elsewhere

The latest claim is that the database itself is no longer the easiest place to attack. Instead, the exposure begins after someone authenticates with Windows Hello and the system starts sending screenshots, extracted text, and metadata to a separate process called AIXHost.exe.

TotalRecall Reloaded reportedly injects code into that process without administrator privileges, then waits for the session to open and the information to start moving.

Some actions, including pulling the latest screenshot, collecting select metadata, and deleting the full archive, can happen without Windows Hello authentication.

Microsoft sees it differently

Microsoft told Ars Technica that the behavior shown by the researcher fits its intended protections and existing controls, and said it doesn’t amount to a security boundary bypass or unauthorized access.

The findings were sent to Microsoft’s Security Response Center on March 6, and the company classified them as not a vulnerability on April 3.

Taskbar view of Windows 11 Recall.

That response is unlikely to settle nerves. Anyone who can access your PC and use your Windows Hello fallback PIN could still reach a detailed archive of emails, browsing activity, messages, and other personal traces.

Why the trust problem remains

Recall was already under scrutiny because it can record so much of what happens on a PC, and this report gives critics another reason to stay skeptical even if Microsoft says the behavior works as designed.

Signal, Brave, and AdGuard have already taken steps to keep their content out of Recall by default, showing the concern extends beyond security researchers.

For Windows 11 users, the takeaway is practical. If you do not need Recall, leaving it off remains the safer move. If you do want it, treat it as a convenience feature with real privacy tradeoffs attached, and watch whether more apps start opting out next.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

I’m still not sold on a disc-less Xbox, but Project Helix feels inevitable now

At $4,499, the Sony A7R VI undercuts the A1 II by $2,000, and still matches it at 30fps

Assassin’s Creed Hexe leak predicts the return of a legendary hero and I can’t wait for it

Qualcomm leak suggests we have entered the ludicrous era of pricey phones

I played like a rat in Arc Raiders, and the loot was disgustingly good

New Backrooms trailer proves it might finally be the horror movie that gets creepypasta right

Apple’s 2028 iPhone display sounds impossible, but Samsung and LG are scrambling to build it

Samsung phones will block those nasty push notifications brimmning with adware

I’m not sold on Googlebook’s future, but it sure has two big wins I can’t ignore

Editors Picks

At $4,499, the Sony A7R VI undercuts the A1 II by $2,000, and still matches it at 30fps

May 14, 2026

Assassin’s Creed Hexe leak predicts the return of a legendary hero and I can’t wait for it

May 14, 2026

Qualcomm leak suggests we have entered the ludicrous era of pricey phones

May 14, 2026

I played like a rat in Arc Raiders, and the loot was disgustingly good

May 14, 2026

Subscribe to News

Get the latest UAE news and updates directly to your inbox.

Latest Posts

New Backrooms trailer proves it might finally be the horror movie that gets creepypasta right

May 14, 2026

Apple’s 2028 iPhone display sounds impossible, but Samsung and LG are scrambling to build it

May 14, 2026

Samsung phones will block those nasty push notifications brimmning with adware

May 14, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian UAE. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.