Mastodon Feed: Post

Mastodon Feed

Boosted by zkat@toot.cat:
GossiTheDog@cyberplace.social ("Kevin Beaumont") wrote:

So @xaitax has cracked Microsoft Recall, he's got access to the encrypted database and has automated dumping of screenshots and all text from screenshots.

I've looked at most recent Recall and yep, you can just read the database as a user process. The database also contains all manner of fields which aren't publicly disclosed for tracking the user's activity.

No AV or EDR alerts triggered, world's #1 in infostealer 😅

* you can just read it in plain text