Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. I was wondering when a reporter would uncover this.

I was wondering when a reporter would uncover this.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
77 Indlæg 61 Posters 380 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • gossithedog@cyberplace.socialG This user is from outside of this forum
    gossithedog@cyberplace.socialG This user is from outside of this forum
    gossithedog@cyberplace.social
    wrote sidst redigeret af
    #2

    I was wondering when a reporter would uncover this.

    So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
    https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

    niknukem@mastodon.socialN jt_rebelo@ciberlandia.ptJ gossithedog@cyberplace.socialG jesterchen@social.tchncs.deJ gwire@mastodon.socialG 44 Replies Last reply
    1
    0
    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

      I was wondering when a reporter would uncover this.

      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

      niknukem@mastodon.socialN This user is from outside of this forum
      niknukem@mastodon.socialN This user is from outside of this forum
      niknukem@mastodon.social
      wrote sidst redigeret af
      #3

      @GossiTheDog You can save Key as a file.

      jesterchen@social.tchncs.deJ 1 Reply Last reply
      0
      • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

        I was wondering when a reporter would uncover this.

        So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
        https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

        jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
        jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
        jt_rebelo@ciberlandia.pt
        wrote sidst redigeret af
        #4

        @GossiTheDog finally! Even worse, they don't even need to request it from Microsoft, if they have access to another device with acess to the MS account connected to that device, it's just some keystrokes and clicks away.

        1 Reply Last reply
        0
        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

          I was wondering when a reporter would uncover this.

          So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
          https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

          gossithedog@cyberplace.socialG This user is from outside of this forum
          gossithedog@cyberplace.socialG This user is from outside of this forum
          gossithedog@cyberplace.social
          wrote sidst redigeret af
          #5

          It's not just the FBI, btw - MS accepts valid law enforcement request internationally. Also it's not just BitLocker.

          jt_rebelo@ciberlandia.ptJ infoseepage@mastodon.socialI shelldozer@oldbytes.spaceS spiro8mastodeon@toot.communityS 4 Replies Last reply
          0
          • niknukem@mastodon.socialN niknukem@mastodon.social

            @GossiTheDog You can save Key as a file.

            jesterchen@social.tchncs.deJ This user is from outside of this forum
            jesterchen@social.tchncs.deJ This user is from outside of this forum
            jesterchen@social.tchncs.de
            wrote sidst redigeret af
            #6

            @niknukem Which doesn't help if the key is additionally and automatically synced to MS. You have a MS account to login, don't you? So it's easy to connect...

            And afaik the sync can only be deactivated using GPOs - but perhaps even this is no longer a possibility...

            1 Reply Last reply
            0
            • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

              It's not just the FBI, btw - MS accepts valid law enforcement request internationally. Also it's not just BitLocker.

              jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
              jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
              jt_rebelo@ciberlandia.pt
              wrote sidst redigeret af
              #7

              @GossiTheDog they had a form somewhere, sometime ago, to expedite the requests, if I'm not mistaken.

              1 Reply Last reply
              0
              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                I was wondering when a reporter would uncover this.

                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                jesterchen@social.tchncs.deJ This user is from outside of this forum
                jesterchen@social.tchncs.deJ This user is from outside of this forum
                jesterchen@social.tchncs.de
                wrote sidst redigeret af
                #8

                @GossiTheDog I remember TrueCrypt and all of the discussions regarding the beginnings of VeraCrypt.

                Is VeraCrypt now finally decided to be a legal fork? Yeah, I know, nobody cares, but before I trust MS in this....

                kaibojens@gruene.socialK 1 Reply Last reply
                0
                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                  I was wondering when a reporter would uncover this.

                  So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                  https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                  gwire@mastodon.socialG This user is from outside of this forum
                  gwire@mastodon.socialG This user is from outside of this forum
                  gwire@mastodon.social
                  wrote sidst redigeret af
                  #9

                  @GossiTheDog is it not the case that the only way to avoid this is to use Windows Professional, or have they changed that with Windows 11 as well?

                  1 Reply Last reply
                  0
                  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                    It's not just the FBI, btw - MS accepts valid law enforcement request internationally. Also it's not just BitLocker.

                    infoseepage@mastodon.socialI This user is from outside of this forum
                    infoseepage@mastodon.socialI This user is from outside of this forum
                    infoseepage@mastodon.social
                    wrote sidst redigeret af
                    #10

                    @GossiTheDog What's amazing to me is how many people have sleepwalked into having their user profile synced to Microsoft's servers. Super bad idea for any number of reasons.

                    jt_rebelo@ciberlandia.ptJ ailurocrat@scicomm.xyzA 2 Replies Last reply
                    0
                    • jesterchen@social.tchncs.deJ jesterchen@social.tchncs.de

                      @GossiTheDog I remember TrueCrypt and all of the discussions regarding the beginnings of VeraCrypt.

                      Is VeraCrypt now finally decided to be a legal fork? Yeah, I know, nobody cares, but before I trust MS in this....

                      kaibojens@gruene.socialK This user is from outside of this forum
                      kaibojens@gruene.socialK This user is from outside of this forum
                      kaibojens@gruene.social
                      wrote sidst redigeret af
                      #11

                      @jesterchen @GossiTheDog Try Cryptomator.

                      1 Reply Last reply
                      0
                      • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                        I was wondering when a reporter would uncover this.

                        So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                        https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                        brokar@mastodon.socialB This user is from outside of this forum
                        brokar@mastodon.socialB This user is from outside of this forum
                        brokar@mastodon.social
                        wrote sidst redigeret af
                        #12

                        @GossiTheDog

                        Rob Braxman has been bitching about this for quite some time.

                        https://www.youtube.com/watch?v=iX3a-goiE2c

                        1 Reply Last reply
                        0
                        • infoseepage@mastodon.socialI infoseepage@mastodon.social

                          @GossiTheDog What's amazing to me is how many people have sleepwalked into having their user profile synced to Microsoft's servers. Super bad idea for any number of reasons.

                          jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
                          jt_rebelo@ciberlandia.ptJ This user is from outside of this forum
                          jt_rebelo@ciberlandia.pt
                          wrote sidst redigeret af
                          #13

                          @Infoseepage @GossiTheDog but Microslop says it "does not provide any government with our encryption keys or the ability to break our encryption". https://www.microsoft.com/en-us/corporate-responsibility/reports/government-requests/customer-data
                          (And they seem to have stopped publishing the reports after the Orange Menace barged into office)...

                          squillace@hachyderm.ioS 1 Reply Last reply
                          0
                          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                            It's not just the FBI, btw - MS accepts valid law enforcement request internationally. Also it's not just BitLocker.

                            shelldozer@oldbytes.spaceS This user is from outside of this forum
                            shelldozer@oldbytes.spaceS This user is from outside of this forum
                            shelldozer@oldbytes.space
                            wrote sidst redigeret af
                            #14

                            @GossiTheDog Unfortunately, not *just* valid ones.

                            1 Reply Last reply
                            0
                            • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                              I was wondering when a reporter would uncover this.

                              So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                              https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                              ox1de@cyberplace.socialO This user is from outside of this forum
                              ox1de@cyberplace.socialO This user is from outside of this forum
                              ox1de@cyberplace.social
                              wrote sidst redigeret af
                              #15

                              @GossiTheDog given the current climate, this is sketchy as hell

                              1 Reply Last reply
                              0
                              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                I was wondering when a reporter would uncover this.

                                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                bontchev@infosec.exchangeB This user is from outside of this forum
                                bontchev@infosec.exchangeB This user is from outside of this forum
                                bontchev@infosec.exchange
                                wrote sidst redigeret af
                                #16

                                @GossiTheDog Yep. Which is why I don't have a Microsoft account, don't back up recovery keys to the cloud, or use BitLocker in the first place.

                                olangella@fosstodon.orgO 1 Reply Last reply
                                0
                                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                  I was wondering when a reporter would uncover this.

                                  So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                  https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                  trimtab@mastodon.socialT This user is from outside of this forum
                                  trimtab@mastodon.socialT This user is from outside of this forum
                                  trimtab@mastodon.social
                                  wrote sidst redigeret af
                                  #17

                                  @GossiTheDog
                                  Bitlocker is only to guarantee that Microsoft's beak gets wet every time your data is stolen. To who is this news? Its been clear for years, great job "Forbes". Where news goes to get lobotomized...

                                  One must be an utter buffoon with what we know today, to think Microsoft in any way has aligned interests with users. They don't.

                                  MS has already betrayed you. They are not your friend.

                                  1 Reply Last reply
                                  0
                                  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                    I was wondering when a reporter would uncover this.

                                    So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                    https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                    killertomato@mastodon.socialK This user is from outside of this forum
                                    killertomato@mastodon.socialK This user is from outside of this forum
                                    killertomato@mastodon.social
                                    wrote sidst redigeret af
                                    #18

                                    @GossiTheDog bitlocker in all enterprise implementations I have seen always felt more like security theatre than actual security. Sure it was gonna keep a thief of opportunity out of your files, but anyone with more resources could get around it

                                    cycrev@infosec.exchangeC 1 Reply Last reply
                                    0
                                    • jt_rebelo@ciberlandia.ptJ jt_rebelo@ciberlandia.pt

                                      @Infoseepage @GossiTheDog but Microslop says it "does not provide any government with our encryption keys or the ability to break our encryption". https://www.microsoft.com/en-us/corporate-responsibility/reports/government-requests/customer-data
                                      (And they seem to have stopped publishing the reports after the Orange Menace barged into office)...

                                      squillace@hachyderm.ioS This user is from outside of this forum
                                      squillace@hachyderm.ioS This user is from outside of this forum
                                      squillace@hachyderm.io
                                      wrote sidst redigeret af
                                      #19

                                      @jt_rebelo @Infoseepage @GossiTheDog it's important to note that the objection here is that users should not be encouraged to store their own encryption keys on a service provider, as that provider has a responsibility to comply with legal search warrants wherever it does business. Microsoft does not "directly" give anyone keys to data without such a warrant as a matter of policy.

                                      @GossiTheDog is correct to argue that a) it shouldn't be made easy to default to the cloud and b) that ultimately, if you mean to encrypt then you likely mean to own those keys yourself. Don't put them in a service that must respond to legal instruments.

                                      squillace@hachyderm.ioS 1 Reply Last reply
                                      0
                                      • squillace@hachyderm.ioS squillace@hachyderm.io

                                        @jt_rebelo @Infoseepage @GossiTheDog it's important to note that the objection here is that users should not be encouraged to store their own encryption keys on a service provider, as that provider has a responsibility to comply with legal search warrants wherever it does business. Microsoft does not "directly" give anyone keys to data without such a warrant as a matter of policy.

                                        @GossiTheDog is correct to argue that a) it shouldn't be made easy to default to the cloud and b) that ultimately, if you mean to encrypt then you likely mean to own those keys yourself. Don't put them in a service that must respond to legal instruments.

                                        squillace@hachyderm.ioS This user is from outside of this forum
                                        squillace@hachyderm.ioS This user is from outside of this forum
                                        squillace@hachyderm.io
                                        wrote sidst redigeret af
                                        #20

                                        @jt_rebelo @Infoseepage @GossiTheDog the default for storing such things would be an encrypted version, per the Apple option.

                                        We have no knowledge whether Apple or Google have ever given something out. I would not take that for a denial that they had.

                                        jt_rebelo@ciberlandia.ptJ 1 Reply Last reply
                                        0
                                        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                          I was wondering when a reporter would uncover this.

                                          So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                          https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                          dazzr@social.tchncs.deD This user is from outside of this forum
                                          dazzr@social.tchncs.deD This user is from outside of this forum
                                          dazzr@social.tchncs.de
                                          wrote sidst redigeret af
                                          #21

                                          @GossiTheDog Several concerns added up to make me leave M$ last year. Good decision.

                                          Happy and free, this is no concern of mine, and I will just enjoy the afternoon sun. Microsoft is history.

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper