Story perspectives
Microsoft's AI Recall Vulnerabilities Exposed by Security Researcher
4/16/2026
1 of 1
Story summary
- Microsoft's AI feature Recall tracked PC usage and stored unencrypted screenshots and user activity data.
- After backlash, Microsoft redesigned Recall to encrypt data and require Windows Hello authentication.
- Security researcher Alexander Hagenah developed TotalRecall Reloaded, a tool that allegedly bypasses protections and reveals vulnerabilities.
- Hagenah claims Microsoft believes there are no vulnerabilities.
- Hagenah's findings suggest the security measures are insufficient and could let malware access data.
