Skip to main content
  1. Home
  2. Computing
  3. News

Windows Recall still has a side door into your private PC history

A new tool targets Recall after you sign in, raising fresh questions for anyone relying on Microsoft's privacy safeguards

Add as a preferred source on Google
Text extract with Windows 11 Recall.
Nadeem Sarwar / Digital Trends

Windows Recall was meant to make your PC history easier to search, but a new proof of concept is putting that promise under pressure again.

TotalRecall Reloaded shows how information captured by the Windows 11 feature can still be intercepted after sign in, even after Microsoft overhauled its protections following last year’s backlash.

Recommended Videos

Recall doesn’t capture a narrow slice of activity. It can preserve a broad visual record of what happens on your PC, including apps, websites, messages, and other on screen content.

Microsoft shifted the feature to opt in use and added encryption plus Windows Hello protection, but the latest findings suggest the weaker point comes after the service is unlocked and starts handing information to another system process.

The weaker link may be elsewhere

The latest claim is that the database itself is no longer the easiest place to attack. Instead, the exposure begins after someone authenticates with Windows Hello and the system starts sending screenshots, extracted text, and metadata to a separate process called AIXHost.exe.

TotalRecall Reloaded reportedly injects code into that process without administrator privileges, then waits for the session to open and the information to start moving.

Some actions, including pulling the latest screenshot, collecting select metadata, and deleting the full archive, can happen without Windows Hello authentication.

Microsoft sees it differently

Microsoft told Ars Technica that the behavior shown by the researcher fits its intended protections and existing controls, and said it doesn’t amount to a security boundary bypass or unauthorized access.

The findings were sent to Microsoft’s Security Response Center on March 6, and the company classified them as not a vulnerability on April 3.

That response is unlikely to settle nerves. Anyone who can access your PC and use your Windows Hello fallback PIN could still reach a detailed archive of emails, browsing activity, messages, and other personal traces.

Why the trust problem remains

Recall was already under scrutiny because it can record so much of what happens on a PC, and this report gives critics another reason to stay skeptical even if Microsoft says the behavior works as designed.

Signal, Brave, and AdGuard have already taken steps to keep their content out of Recall by default, showing the concern extends beyond security researchers.

For Windows 11 users, the takeaway is practical. If you do not need Recall, leaving it off remains the safer move. If you do want it, treat it as a convenience feature with real privacy tradeoffs attached, and watch whether more apps start opting out next.

Paulo Vargas
Paulo Vargas is an English major turned reporter turned technical writer, with a career that has always circled back to…
Copilot could soon help diagnose issues with your PC
A new PC Insights feature will help you find what's slowing down your PC, though Copilot itself may be one of the main problems.
Microsoft Copilot Banner Featured

Copilot's next trick is diagnosing your PC's problems, but the catch is that the assistant doing the diagnosing is itself part of the problem. Windows Latest reports that Microsoft is testing a new Copilot feature called PC Insights, which will let you ask the AI assistant natural language questions about your computer's hardware and storage instead of digging through the Task Manager or Settings. The feature will reportedly allow users to ask questions like, "Do I have enough space for a 100GB game?" and Copilot will check the available storage to offer a response. Users will also be able to ask about CPU usage, battery health, etc., to diagnose issues.

What Copilot will be able to see

Read more
OpenAI just took the handcuffs off your ChatGPT Work and Codex usage limits, at least for now
The 5 hour limit is gone for now, your usage counter just reset, and GPT 5.6 Sol is about to get a lot lighter on your allowance.
OpenAI logo on Microsoft surface

It seems that OpenAI has been on a gallop lately, releasing new updates left and right. Just a few days back, the company launched its GPT-5.6 Sol, Terra, and Luna models for the general public, and now it's back with another update that will please its users even more. 

The headline change is that the 5-hour usage limit restriction in ChatGPT Work and Codex is being temporarily removed for all Plus, Business, and Pro plans. If you have ever been in the middle of a long working session and watched the limit message appear at the worst possible moment, this one is for you. 

Read more
This app gives your Mac a music player you’ll actually enjoy using
Apple Music on the Mac is a chore. Liqoria is the fix, and it plays nice with Spotify and YouTube too.
Liqoria music player

The Apple Music app on the Mac is not up to the mark. I don’t like how it looks or behaves, and Apple should take some inspiration from Spotify to make the app more modern and useful. Until that happens, we are stuck with a subpar app experience.

That’s why I never use the Apple Music app on my Mac and rely on third-party apps that let me control music. Today I am featuring one of the latest apps I discovered. It’s called Liqoria, and it’s probably the only music player app you will ever need.

Read more