Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. I was wondering when a reporter would uncover this.

I was wondering when a reporter would uncover this.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
77 Indlæg 61 Posters 380 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

    I was wondering when a reporter would uncover this.

    So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
    https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

    abmurrow@hachyderm.ioA This user is from outside of this forum
    abmurrow@hachyderm.ioA This user is from outside of this forum
    abmurrow@hachyderm.io
    wrote sidst redigeret af
    #29

    @GossiTheDog That's not encryption, that's just a password with extra steps.

    1 Reply Last reply
    0
    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

      I was wondering when a reporter would uncover this.

      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

      troi@techhub.socialT This user is from outside of this forum
      troi@techhub.socialT This user is from outside of this forum
      troi@techhub.social
      wrote sidst redigeret af
      #30

      @GossiTheDog I was already in the process of getting everything Microsoft dragged up to its cloud out. Dropbox is finally killed off, and as much of Google as I can, but they don't make it easy.

      1 Reply Last reply
      0
      • gsprs@mastodon.socialG gsprs@mastodon.social

        @GossiTheDog I don’t understand putting your trust in black box proprietary encryption software when TrueCrypt/VeraCrypt exist and are older than BitLocker by 3 years, stupid doesn’t even begin to describe it.

        mossman@social.vivaldi.netM This user is from outside of this forum
        mossman@social.vivaldi.netM This user is from outside of this forum
        mossman@social.vivaldi.net
        wrote sidst redigeret af
        #31

        @gsprs @GossiTheDog last time I set up a Win11 machine a year and a half ago, it was obligatory to use an account (they had blocked all the workarounds at the time) - and BitLocker was automatically activated. Not sure it's even easy to deactivate that and use VeraCrypt instead, now.

        On my previous Win11 machine, I was able to bypass using an account and BitLocker was not provided. In that case I found I could put a firmware lock on the drive - good enough for my purposes.

        1 Reply Last reply
        0
        • bontchev@infosec.exchangeB bontchev@infosec.exchange

          @GossiTheDog Yep. Which is why I don't have a Microsoft account, don't back up recovery keys to the cloud, or use BitLocker in the first place.

          olangella@fosstodon.orgO This user is from outside of this forum
          olangella@fosstodon.orgO This user is from outside of this forum
          olangella@fosstodon.org
          wrote sidst redigeret af
          #32

          @bontchev @GossiTheDog which is why I don't have a Microsoft operating system 😉

          1 Reply Last reply
          0
          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

            I was wondering when a reporter would uncover this.

            So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
            https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

            rairii@labyrinth.zoneR This user is from outside of this forum
            rairii@labyrinth.zoneR This user is from outside of this forum
            rairii@labyrinth.zone
            wrote sidst redigeret af
            #33
            @GossiTheDog "so bitlocker is super secure, right?"

            yeah, that's what i thought too, until a few years ago, when most of windows boot environment bugs i found came with bitlocker key dumping or derivation as a side effect

            there's more default settings than just that that leads to a less secure configuration
            1 Reply Last reply
            0
            • yoshi@toot.communityY yoshi@toot.community

              @GossiTheDog Never, ever trust any company to secure your secrets. Use local storage like Proton to keep it on your own devices, under your own control

              heretochewgum@fosstodon.orgH This user is from outside of this forum
              heretochewgum@fosstodon.orgH This user is from outside of this forum
              heretochewgum@fosstodon.org
              wrote sidst redigeret af
              #34

              @Yoshi @GossiTheDog

              https://keepassxc.org/

              1 Reply Last reply
              0
              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                I was wondering when a reporter would uncover this.

                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                autonomousapps@mstdn.socialA This user is from outside of this forum
                autonomousapps@mstdn.socialA This user is from outside of this forum
                autonomousapps@mstdn.social
                wrote sidst redigeret af
                #35

                @GossiTheDog jfc

                > Federal investigators in Guam believed the devices held evidence that would help prove individuals handling the island’s Covid unemployment assistance program were part of a plot to steal funds.

                1 Reply Last reply
                0
                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                  I was wondering when a reporter would uncover this.

                  So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                  https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                  lokalmatator@social.tchncs.deL This user is from outside of this forum
                  lokalmatator@social.tchncs.deL This user is from outside of this forum
                  lokalmatator@social.tchncs.de
                  wrote sidst redigeret af
                  #36

                  @GossiTheDog
                  So, wo auch das Thema dann mal durch ist.

                  Gut das wir im Bereich der kritischen Infrastruktur auf unabhängige #Software setzen.

                  1 Reply Last reply
                  0
                  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                    I was wondering when a reporter would uncover this.

                    So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                    https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                    ml@social.mitexleo.oneM This user is from outside of this forum
                    ml@social.mitexleo.oneM This user is from outside of this forum
                    ml@social.mitexleo.one
                    wrote sidst redigeret af
                    #37

                    @GossiTheDog I'm happy with my LUKS encryption

                    1 Reply Last reply
                    0
                    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                      I was wondering when a reporter would uncover this.

                      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                      alandvalonline@mastodon.socialA This user is from outside of this forum
                      alandvalonline@mastodon.socialA This user is from outside of this forum
                      alandvalonline@mastodon.social
                      wrote sidst redigeret af
                      #38

                      @GossiTheDog PIRACY flaw.

                      1 Reply Last reply
                      0
                      • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                        I was wondering when a reporter would uncover this.

                        So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                        https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                        linuxine@social.linuxine.netL This user is from outside of this forum
                        linuxine@social.linuxine.netL This user is from outside of this forum
                        linuxine@social.linuxine.net
                        wrote sidst redigeret af
                        #39
                        @GossiTheDog for me, Bitlocker is basically Microsoft saying "for your safety, we will encrypt your device, don't you worry, I keep the key". Personally, I prefer to choose and keep the key myself when I want something locked 😅 And now it is even better to learn that the key is not given to the user by default, but provided to the FBI 😅
                        1 Reply Last reply
                        0
                        • killertomato@mastodon.socialK killertomato@mastodon.social

                          @GossiTheDog bitlocker in all enterprise implementations I have seen always felt more like security theatre than actual security. Sure it was gonna keep a thief of opportunity out of your files, but anyone with more resources could get around it

                          cycrev@infosec.exchangeC This user is from outside of this forum
                          cycrev@infosec.exchangeC This user is from outside of this forum
                          cycrev@infosec.exchange
                          wrote sidst redigeret af
                          #40

                          @Killertomato @GossiTheDog when reading about privacy violation enforcement actions by the FTC there were a lot that would have been resolved by this. Laptops full of patient data stolen from a car, etc.

                          Honestly it probably mitigates most crimes where an encrypted hard drive avoids the risk. Not all. And not all the non-crime related reasons people care about privacy

                          1 Reply Last reply
                          0
                          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                            I was wondering when a reporter would uncover this.

                            So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                            https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                            ruston@mstdn.caR This user is from outside of this forum
                            ruston@mstdn.caR This user is from outside of this forum
                            ruston@mstdn.ca
                            wrote sidst redigeret af
                            #41

                            @GossiTheDog Another reason I do not use Microsoft. I am forced at work to use it but i try as many work around to avoid it as much as possible. Only another 450 days left of being forced to use it.

                            1 Reply Last reply
                            0
                            • jt_rebelo@ciberlandia.ptJ jt_rebelo@ciberlandia.pt

                              @squillace well, it's part of how Windows works with Microsoft (online) accounts at least since Windows 8.1 (I had to recover an encryption key to help someone reset their Surface device and I got it through their user account, a Microslop support rep back then told me that they couldn't help if there wasn't a cloud backup, the key wasn't accessible to the user without it). So users don't really have a choice in the matter (no access to key at all, or have it on Microslop's cloud).
                              @Infoseepage @GossiTheDog

                              squillace@hachyderm.ioS This user is from outside of this forum
                              squillace@hachyderm.ioS This user is from outside of this forum
                              squillace@hachyderm.io
                              wrote sidst redigeret af
                              #42

                              @jt_rebelo @Infoseepage @GossiTheDog that is precisely the point. you CAN possess and NOT backup your keys in a cloud. But sure, it makes it easy for msft to help you out in a pinch. But MSFT could upload an encrypted version -- they do not offer that. Unfortunately.

                              squillace@hachyderm.ioS 1 Reply Last reply
                              0
                              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                I was wondering when a reporter would uncover this.

                                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                toxy@mastodon.acc.sunet.seT This user is from outside of this forum
                                toxy@mastodon.acc.sunet.seT This user is from outside of this forum
                                toxy@mastodon.acc.sunet.se
                                wrote sidst redigeret af
                                #43

                                @GossiTheDog Bloody Nora!

                                1 Reply Last reply
                                0
                                • infoseepage@mastodon.socialI infoseepage@mastodon.social

                                  @GossiTheDog What's amazing to me is how many people have sleepwalked into having their user profile synced to Microsoft's servers. Super bad idea for any number of reasons.

                                  ailurocrat@scicomm.xyzA This user is from outside of this forum
                                  ailurocrat@scicomm.xyzA This user is from outside of this forum
                                  ailurocrat@scicomm.xyz
                                  wrote sidst redigeret af
                                  #44

                                  @Infoseepage @GossiTheDog Corporations can't be trusted.They prove that over and over.

                                  1 Reply Last reply
                                  0
                                  • squillace@hachyderm.ioS squillace@hachyderm.io

                                    @jt_rebelo @Infoseepage @GossiTheDog that is precisely the point. you CAN possess and NOT backup your keys in a cloud. But sure, it makes it easy for msft to help you out in a pinch. But MSFT could upload an encrypted version -- they do not offer that. Unfortunately.

                                    squillace@hachyderm.ioS This user is from outside of this forum
                                    squillace@hachyderm.ioS This user is from outside of this forum
                                    squillace@hachyderm.io
                                    wrote sidst redigeret af
                                    #45

                                    @jt_rebelo @Infoseepage @GossiTheDog altneratively, they could store it in the TEE encrypted drive now, but again, they don't offer that. MSFT can't touch that one. But you have to know; normal users obviously do not.

                                    1 Reply Last reply
                                    0
                                    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                      I was wondering when a reporter would uncover this.

                                      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                      christopherkunz@chaos.socialC This user is from outside of this forum
                                      christopherkunz@chaos.socialC This user is from outside of this forum
                                      christopherkunz@chaos.social
                                      wrote sidst redigeret af
                                      #46

                                      @GossiTheDog uploading the BitLocker recovery keys to the MS cloud is not default behavior, is it? Even the Forbes article states that you can opt-out of it (or do you even have to opt-in?).

                                      jkmcnk@mastodon.socialJ mplouffe@scholar.socialM 2 Replies Last reply
                                      0
                                      • christopherkunz@chaos.socialC christopherkunz@chaos.social

                                        @GossiTheDog uploading the BitLocker recovery keys to the MS cloud is not default behavior, is it? Even the Forbes article states that you can opt-out of it (or do you even have to opt-in?).

                                        jkmcnk@mastodon.socialJ This user is from outside of this forum
                                        jkmcnk@mastodon.socialJ This user is from outside of this forum
                                        jkmcnk@mastodon.social
                                        wrote sidst redigeret af
                                        #47

                                        @christopherkunz @GossiTheDog if you have to to opt out, that makes it default behaviour by definition. 🙂

                                        christopherkunz@chaos.socialC 1 Reply Last reply
                                        0
                                        • jkmcnk@mastodon.socialJ jkmcnk@mastodon.social

                                          @christopherkunz @GossiTheDog if you have to to opt out, that makes it default behaviour by definition. 🙂

                                          christopherkunz@chaos.socialC This user is from outside of this forum
                                          christopherkunz@chaos.socialC This user is from outside of this forum
                                          christopherkunz@chaos.social
                                          wrote sidst redigeret af
                                          #48

                                          @jkmcnk Yup, certainly. Firing up my win machine now to see what's up with that.

                                          jkmcnk@mastodon.socialJ 1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper