Microsoft confirms it will give the FBI your Windows PC data encryption key if asked — you can thank Windows 11’s forced online accounts for that

https://www.windowscentral.com/microsoft/windows-11/microsoft-bitlocker-encryption-keys-give-fbi-legal-order-privacy-nightmare

31 Comments

  1. > This is notable as other tech companies such as Apple have famously refused to provide law enforcement with access to data stored on their products. Apple has openly fought against the FBI in the past when they were asked to provide a backdoor into an iPhone.

    Yet another “talk all the shit you want about Apple because they absolutely deserve it, but at least they’re not Microsoft” situation.

  2. How come local law enforcement can get into computers so easily but the FBI needs to go to Microsoft to get into these ones?

  3. not when im using a self encrypting drive. Self encrypting drives are completely separate from any of the other pc hardware and OS

  4. Goddamn, dude. There’s no way Microsoft hangs onto the same market share over the next 2-5 years. Sure, they’ll keep their dominance in the office, but at home? I don’t know, man. 

    Linux Mint is licking its chops. It’ll be real interesting if they go on a marketing blitz to capitalize on Microsoft completely shitting the bed. 

  5. Sea_Perspective6891 on

    There are workarounds so you can just stay on a local account instead. I think the Rufus installer tool lets you enable this.

  6. good god, i am so migrating to linux once ESU for windows 10 ends. they just keep dogpiling more bad news over and over on their users.

  7. -CalculatedChaos- on

    Been on MacOS for 5 years. If I ever switch it will be to Linux. Let’s leave windows in the past

  8. Online account is forced but having bitlockers recovery keys tied to it is not. I dont like forced online account for windows… but making things up and creating clickbait titles will just make it worse.

  9. There’s nothing stopping a privacy-conscious user from enabling Bitlocker without the online key backup. You just need to keep a local backup instead (printed, USB, etc.). Or use Veracrypt if you don’t trust BitLocker. 

    The default of encrypted with online backup is still much better than the previous default of just not encrypted at all.

    And no, encrypted without (online) backup is not a safe default for the average user. Cases of data loss to forgotten passwords or TPM corruption would be a far bigger problem. 

  10. I fully migrated to Linux about four years ago, I’m more than happy that I did and that I’m not forced to any Microsoft shenanigans anymore, not even at work.

  11. Don’t kid yourself. This has been the case with Microsoft, Google, Apple, Meta, etc

    What is wrong with the public amnesia towards Snowden?

  12. Another_Slut_Dragon on

    It can only do that if you were stupid enough to store your bitlocker key on the cloud.

    Your first steps for owning any device is to break anything cloud or Ai right in the registry. Clamp down every setting related to online storage.

    Online storage is the default. Kill that when initially setting the computer up.

  13. All foreign companies that use Windows and Microsoft Office products should immediately look for a software alternative. The FBI under the current administration in Washington D.C. cannot be trusted. They may leak your company’s secret to your American competitors.

  14. all my windows devices are joined to a domain that I run in my lab…. what’s an online account?

  15. Nice_Tadpole5306 on

    When going through the OOBE (Out of Box Experience), make sure you aren’t connected to internet (unplug Ethernet), then press Shift + F10, then run this command `start ms-cxh:localonly`. You will get the option to create a local account and never have to tie your Microsoft account to anything.

  16. Mediocre-Housing-131 on

    Those saying “use an offline account lol”…

    Do you honestly think Microsoft gave the FBI a backdoor into your computer but draw the line at not doing it when you aren’t signed in?

    No copy of Windows should be considered safe. There is way too much code to audit. Linux or assume you’re absolutely being watched 24/7

  17. Seriously, just get Zorin OS, Linux Mint, PopOS and migrate. This is getting too ridiculous. I got my dad off Win 11 and put him on Zorin and he can’t believe how much better it is. Flip them the bird and go to Linux.

  18. As a newbie, is there anything you can do on Windows like in the settings that can prevent this or turn this off? This sht is ridiculous at this point. I’ve already turned off all of the diagnostic data settings being sent, etc.

  19. So much for warrants. It’s like they’re actively trying to convince people to abandon their own system. What the fuck is even next?