Open Menu
AllLocalCommunitiesAbout
lotide
AllLocalCommunitiesAbout
Login

Microsoft gave FBI a set of BitLocker encryption keys to unlock suspects' laptops: Reports | TechCrunch

⁨1316⁩ ⁨likes⁩

Submitted ⁨⁨3⁩ ⁨weeks⁩ ago⁩ by ⁨commander@lemmy.world⁩ to ⁨technology@lemmy.world⁩

https://techcrunch.com/2026/01/23/microsoft-gave-fbi-a-set-of-bitlocker-encryption-keys-to-unlock-suspects-laptops-reports/

source

Comments

Sort:hotnewtop
  • Treczoks@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

    Just as I expected how security in Microsoft products works.

    source
  • teslasaur@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

    Well, since you don’t actually enter a password to decrypt a bitlocker device, you can intercept the key data with physical connectors to the TPM

    Bitlocker just makes it slightly more tedious to retrieve data. As long as you have all other components intact aswell.

    source
    • Kazumara@discuss.tchncs.de ⁨2⁩ ⁨weeks⁩ ago

      I’m just wondering how many devices still use dedicated TPMs, instead of the ones integrated in the SoC by AMD and Intel. Sniffing a bus inside the SoC must be significantly harder or impossible.

      source
  • ItsMeForRealNow@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

    Can I have those please? I think I need it to unlock an old hardrive.

    source
    • Kissaki@feddit.org ⁨3⁩ ⁨weeks⁩ ago

      If you uploaded your recovery key to Microsoft, then recovery is probably available in the normal recovery workflow.

      source
  • svullo56@feddit.nu ⁨3⁩ ⁨weeks⁩ ago

    Sooo… Is there an alternative to be secure other than switching to another OS? Not that I’m doing anything interesting but o would like to have at least a bit of privacy.

    source
    • DeathByBigSad@sh.itjust.works ⁨3⁩ ⁨weeks⁩ ago

      Veracrypt + LTSC

      source
    • frongt@lemmy.zip ⁨3⁩ ⁨weeks⁩ ago

      Yeah, just don’t enable key upload and this can’t happen. Don’t link your account either if you want to be more sure.

      If your account has already been linked, unlink it and change the bitlocker keys, both regular and recovery. (Easiest way is to entirely decrypt and reencrypt the drive.)

      source
      • DeathByBigSad@sh.itjust.works ⁨3⁩ ⁨weeks⁩ ago

        Home edition has this “please sign in to microsoft account to ‘finish encryption’” text with a exclamation mark which implies the key is available on the drive unencrypted if you don’t sign in, meaning anyone could just access your drive.

        There is no “turning off” the key upload, once you sign in, the upload happens immediately, you can “delete” it later, but like nobody really knows if they ever delete it once they have it.

        source
        • -> View More Comments
    • Lfrith@lemmy.ca ⁨3⁩ ⁨weeks⁩ ago

      Use Windows LTSC that is stripped of offline requirements, copilot, and the Microsoft store. And use veracrypt. You can set up a container or encrypt a drive such as an external.

      source
  • kobaltauge@social.tchncs.de ⁨2⁩ ⁨weeks⁩ ago

    @commander
    @wordmark

    Attachment: f2.tchncs.de ↗
    source
  • SabinStargem@lemmy.today ⁨3⁩ ⁨weeks⁩ ago

    All the more reason to use Linux. I will be swapping to Cachy or SteamOS Desktop, depending on when and how things play out.

    source
  • Appoxo@lemmy.dbzer0.com ⁨3⁩ ⁨weeks⁩ ago

    Everyone here (exceptions apply) being soo linux friendly and so tech literate that they don’t know jack shit about both sides and jump to assumptions.

    Microshit has no access to your key unless you upload it.

    Well DUH!

    source
    • UltraBlack@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

      A microsoft accpunt is now mandatory for windows. Your bitlocker keys are automatically uploaded to your account

      source
      • ultranaut@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

        This is not correct. You can use Windows without a Microsoft account.

        source
        • -> View More Comments
      • Appoxo@lemmy.dbzer0.com ⁨3⁩ ⁨weeks⁩ ago

        No, it is not.
        At least not in the EU where I live.

        source
      • LifeInMultipleChoice@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

        That has to be version specific. I did run into the issue that the Apple devices app that Apple makes is only made available through the Microsoft Store though. So you can’t just run a standard install for it officially. Which sucks. Also their is no official Apple Devices app for Linux, so anyone who has an iPhone can’t “safely” manage their device without having both an Apple Account and a Microsoft account, or a Mac.

        source
        • -> View More Comments
  • goodboyjojo@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

    Isn’t this against the fourth admement or something?

    source