Mastodon Skip to content
  • Home
  • Aktuell
  • Tags
  • Über dieses Forum
Einklappen
Grafik mit zwei überlappenden Sprechblasen, eine grün und eine lila.
Abspeckgeflüster – Forum für Menschen mit Gewicht(ung)

Kostenlos. Werbefrei. Menschlich. Dein Abnehmforum.

  1. Home
  2. Uncategorized
  3. I was wondering when a reporter would uncover this.

I was wondering when a reporter would uncover this.

Geplant Angeheftet Gesperrt Verschoben Uncategorized
92 Beiträge 75 Kommentatoren 0 Aufrufe
  • Älteste zuerst
  • Neuste zuerst
  • Meiste Stimmen
Antworten
  • In einem neuen Thema antworten
Anmelden zum Antworten
Dieses Thema wurde gelöscht. Nur Nutzer mit entsprechenden Rechten können es sehen.
  • bontchev@infosec.exchangeB bontchev@infosec.exchange

    @GossiTheDog Yep. Which is why I don't have a Microsoft account, don't back up recovery keys to the cloud, or use BitLocker in the first place.

    olangella@fosstodon.orgO This user is from outside of this forum
    olangella@fosstodon.orgO This user is from outside of this forum
    olangella@fosstodon.org
    schrieb zuletzt editiert von
    #32

    @bontchev @GossiTheDog which is why I don't have a Microsoft operating system 😉

    1 Antwort Letzte Antwort
    0
    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

      I was wondering when a reporter would uncover this.

      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

      rairii@labyrinth.zoneR This user is from outside of this forum
      rairii@labyrinth.zoneR This user is from outside of this forum
      rairii@labyrinth.zone
      schrieb zuletzt editiert von
      #33
      @GossiTheDog "so bitlocker is super secure, right?"

      yeah, that's what i thought too, until a few years ago, when most of windows boot environment bugs i found came with bitlocker key dumping or derivation as a side effect

      there's more default settings than just that that leads to a less secure configuration
      1 Antwort Letzte Antwort
      0
      • yoshi@toot.communityY yoshi@toot.community

        @GossiTheDog Never, ever trust any company to secure your secrets. Use local storage like Proton to keep it on your own devices, under your own control

        heretochewgum@fosstodon.orgH This user is from outside of this forum
        heretochewgum@fosstodon.orgH This user is from outside of this forum
        heretochewgum@fosstodon.org
        schrieb zuletzt editiert von
        #34

        @Yoshi @GossiTheDog

        https://keepassxc.org/

        1 Antwort Letzte Antwort
        0
        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

          I was wondering when a reporter would uncover this.

          So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
          https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

          autonomousapps@mstdn.socialA This user is from outside of this forum
          autonomousapps@mstdn.socialA This user is from outside of this forum
          autonomousapps@mstdn.social
          schrieb zuletzt editiert von
          #35

          @GossiTheDog jfc

          > Federal investigators in Guam believed the devices held evidence that would help prove individuals handling the island’s Covid unemployment assistance program were part of a plot to steal funds.

          1 Antwort Letzte Antwort
          0
          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

            I was wondering when a reporter would uncover this.

            So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
            https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

            lokalmatator@social.tchncs.deL This user is from outside of this forum
            lokalmatator@social.tchncs.deL This user is from outside of this forum
            lokalmatator@social.tchncs.de
            schrieb zuletzt editiert von
            #36

            @GossiTheDog
            So, wo auch das Thema dann mal durch ist.

            Gut das wir im Bereich der kritischen Infrastruktur auf unabhängige #Software setzen.

            1 Antwort Letzte Antwort
            0
            • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

              I was wondering when a reporter would uncover this.

              So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
              https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

              ml@social.mitexleo.oneM This user is from outside of this forum
              ml@social.mitexleo.oneM This user is from outside of this forum
              ml@social.mitexleo.one
              schrieb zuletzt editiert von
              #37

              @GossiTheDog I'm happy with my LUKS encryption

              1 Antwort Letzte Antwort
              0
              • mcdope@nrw.socialM mcdope@nrw.social shared this topic
              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                I was wondering when a reporter would uncover this.

                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                alandvalonline@mastodon.socialA This user is from outside of this forum
                alandvalonline@mastodon.socialA This user is from outside of this forum
                alandvalonline@mastodon.social
                schrieb zuletzt editiert von
                #38

                @GossiTheDog PIRACY flaw.

                1 Antwort Letzte Antwort
                0
                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                  I was wondering when a reporter would uncover this.

                  So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                  https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                  linuxine@social.linuxine.netL This user is from outside of this forum
                  linuxine@social.linuxine.netL This user is from outside of this forum
                  linuxine@social.linuxine.net
                  schrieb zuletzt editiert von
                  #39
                  @GossiTheDog for me, Bitlocker is basically Microsoft saying "for your safety, we will encrypt your device, don't you worry, I keep the key". Personally, I prefer to choose and keep the key myself when I want something locked 😅 And now it is even better to learn that the key is not given to the user by default, but provided to the FBI 😅
                  1 Antwort Letzte Antwort
                  0
                  • killertomato@mastodon.socialK killertomato@mastodon.social

                    @GossiTheDog bitlocker in all enterprise implementations I have seen always felt more like security theatre than actual security. Sure it was gonna keep a thief of opportunity out of your files, but anyone with more resources could get around it

                    cycrev@infosec.exchangeC This user is from outside of this forum
                    cycrev@infosec.exchangeC This user is from outside of this forum
                    cycrev@infosec.exchange
                    schrieb zuletzt editiert von
                    #40

                    @Killertomato @GossiTheDog when reading about privacy violation enforcement actions by the FTC there were a lot that would have been resolved by this. Laptops full of patient data stolen from a car, etc.

                    Honestly it probably mitigates most crimes where an encrypted hard drive avoids the risk. Not all. And not all the non-crime related reasons people care about privacy

                    1 Antwort Letzte Antwort
                    0
                    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                      I was wondering when a reporter would uncover this.

                      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                      ruston@mstdn.caR This user is from outside of this forum
                      ruston@mstdn.caR This user is from outside of this forum
                      ruston@mstdn.ca
                      schrieb zuletzt editiert von
                      #41

                      @GossiTheDog Another reason I do not use Microsoft. I am forced at work to use it but i try as many work around to avoid it as much as possible. Only another 450 days left of being forced to use it.

                      1 Antwort Letzte Antwort
                      0
                      • jt_rebelo@ciberlandia.ptJ jt_rebelo@ciberlandia.pt

                        @squillace well, it's part of how Windows works with Microsoft (online) accounts at least since Windows 8.1 (I had to recover an encryption key to help someone reset their Surface device and I got it through their user account, a Microslop support rep back then told me that they couldn't help if there wasn't a cloud backup, the key wasn't accessible to the user without it). So users don't really have a choice in the matter (no access to key at all, or have it on Microslop's cloud).
                        @Infoseepage @GossiTheDog

                        squillace@hachyderm.ioS This user is from outside of this forum
                        squillace@hachyderm.ioS This user is from outside of this forum
                        squillace@hachyderm.io
                        schrieb zuletzt editiert von
                        #42

                        @jt_rebelo @Infoseepage @GossiTheDog that is precisely the point. you CAN possess and NOT backup your keys in a cloud. But sure, it makes it easy for msft to help you out in a pinch. But MSFT could upload an encrypted version -- they do not offer that. Unfortunately.

                        squillace@hachyderm.ioS 1 Antwort Letzte Antwort
                        0
                        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                          I was wondering when a reporter would uncover this.

                          So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                          https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                          toxy@mastodon.acc.sunet.seT This user is from outside of this forum
                          toxy@mastodon.acc.sunet.seT This user is from outside of this forum
                          toxy@mastodon.acc.sunet.se
                          schrieb zuletzt editiert von
                          #43

                          @GossiTheDog Bloody Nora!

                          1 Antwort Letzte Antwort
                          0
                          • infoseepage@mastodon.socialI infoseepage@mastodon.social

                            @GossiTheDog What's amazing to me is how many people have sleepwalked into having their user profile synced to Microsoft's servers. Super bad idea for any number of reasons.

                            ailurocrat@scicomm.xyzA This user is from outside of this forum
                            ailurocrat@scicomm.xyzA This user is from outside of this forum
                            ailurocrat@scicomm.xyz
                            schrieb zuletzt editiert von
                            #44

                            @Infoseepage @GossiTheDog Corporations can't be trusted.They prove that over and over.

                            1 Antwort Letzte Antwort
                            0
                            • squillace@hachyderm.ioS squillace@hachyderm.io

                              @jt_rebelo @Infoseepage @GossiTheDog that is precisely the point. you CAN possess and NOT backup your keys in a cloud. But sure, it makes it easy for msft to help you out in a pinch. But MSFT could upload an encrypted version -- they do not offer that. Unfortunately.

                              squillace@hachyderm.ioS This user is from outside of this forum
                              squillace@hachyderm.ioS This user is from outside of this forum
                              squillace@hachyderm.io
                              schrieb zuletzt editiert von
                              #45

                              @jt_rebelo @Infoseepage @GossiTheDog altneratively, they could store it in the TEE encrypted drive now, but again, they don't offer that. MSFT can't touch that one. But you have to know; normal users obviously do not.

                              1 Antwort Letzte Antwort
                              0
                              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                I was wondering when a reporter would uncover this.

                                So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                christopherkunz@chaos.socialC This user is from outside of this forum
                                christopherkunz@chaos.socialC This user is from outside of this forum
                                christopherkunz@chaos.social
                                schrieb zuletzt editiert von
                                #46

                                @GossiTheDog uploading the BitLocker recovery keys to the MS cloud is not default behavior, is it? Even the Forbes article states that you can opt-out of it (or do you even have to opt-in?).

                                jkmcnk@mastodon.socialJ mplouffe@scholar.socialM 2 Antworten Letzte Antwort
                                0
                                • christopherkunz@chaos.socialC christopherkunz@chaos.social

                                  @GossiTheDog uploading the BitLocker recovery keys to the MS cloud is not default behavior, is it? Even the Forbes article states that you can opt-out of it (or do you even have to opt-in?).

                                  jkmcnk@mastodon.socialJ This user is from outside of this forum
                                  jkmcnk@mastodon.socialJ This user is from outside of this forum
                                  jkmcnk@mastodon.social
                                  schrieb zuletzt editiert von
                                  #47

                                  @christopherkunz @GossiTheDog if you have to to opt out, that makes it default behaviour by definition. 🙂

                                  christopherkunz@chaos.socialC 1 Antwort Letzte Antwort
                                  0
                                  • jkmcnk@mastodon.socialJ jkmcnk@mastodon.social

                                    @christopherkunz @GossiTheDog if you have to to opt out, that makes it default behaviour by definition. 🙂

                                    christopherkunz@chaos.socialC This user is from outside of this forum
                                    christopherkunz@chaos.socialC This user is from outside of this forum
                                    christopherkunz@chaos.social
                                    schrieb zuletzt editiert von
                                    #48

                                    @jkmcnk Yup, certainly. Firing up my win machine now to see what's up with that.

                                    jkmcnk@mastodon.socialJ 1 Antwort Letzte Antwort
                                    0
                                    • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                      I was wondering when a reporter would uncover this.

                                      So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                      https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                      alex@higher-edu.socialA This user is from outside of this forum
                                      alex@higher-edu.socialA This user is from outside of this forum
                                      alex@higher-edu.social
                                      schrieb zuletzt editiert von
                                      #49

                                      @GossiTheDog yep thzx. Just wanna add: in order to get the key from MS, it leaves ztraces in the Ermittliungsakte/ papers...just checking on the HDD drive won't (as 2 same amounts)...the info is important!

                                      1 Antwort Letzte Antwort
                                      0
                                      • mindtunes@troet.cafeM mindtunes@troet.cafe shared this topic
                                      • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                        I was wondering when a reporter would uncover this.

                                        So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                        https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                        katharta@quietzero.netK This user is from outside of this forum
                                        katharta@quietzero.netK This user is from outside of this forum
                                        katharta@quietzero.net
                                        schrieb zuletzt editiert von
                                        #50

                                        @GossiTheDog IT admins everywhere should have started exploring viable alternatives the second Candy Crush showed up in Windows Enterprise.

                                        If the FBI can obtain someone's Bitlocker keys, that means malicious actors can, too.

                                        There is no such things as a backdoor for only the good guys.

                                        1 Antwort Letzte Antwort
                                        0
                                        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                          I was wondering when a reporter would uncover this.

                                          So BitLocker is super secure, right? Well... BitLocker recovery keys are backed up to Microsoft's Cloud - and they give them out to law enforcement on request. Using the BitLocker recovery key, you can just unlock the device without a PIN etc.
                                          https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/

                                          monkeyben@mastodon.sdf.orgM This user is from outside of this forum
                                          monkeyben@mastodon.sdf.orgM This user is from outside of this forum
                                          monkeyben@mastodon.sdf.org
                                          schrieb zuletzt editiert von
                                          #51

                                          @GossiTheDog

                                          It's not a flaw. It's a feature. For authority and Microslop.

                                          1 Antwort Letzte Antwort
                                          0
                                          Antworten
                                          • In einem neuen Thema antworten
                                          Anmelden zum Antworten
                                          • Älteste zuerst
                                          • Neuste zuerst
                                          • Meiste Stimmen



                                          Copyright (c) 2025 abSpecktrum (@abspecklog@fedimonster.de)

                                          Erstellt mit Schlaflosigkeit, Kaffee, Brokkoli & ♥

                                          Impressum | Datenschutzerklärung | Nutzungsbedingungen

                                          • Anmelden

                                          • Du hast noch kein Konto? Registrieren

                                          • Anmelden oder registrieren, um zu suchen
                                          • Erster Beitrag
                                            Letzter Beitrag
                                          0
                                          • Home
                                          • Aktuell
                                          • Tags
                                          • Über dieses Forum