Post B4BwTF0AC8OkbqCm6C by sodiboo@gaysex.cloud
 (DIR) More posts by sodiboo@gaysex.cloud
 (DIR) Post #B4BwTEadj1yvKgGOJc by Orca@nya.one
       0 likes, 0 repeats
       
       If you installed Windows 11 on officially supported hardware, it will automatically encrypt your disk, so no other people than you can access your data. But if you login to a Microsoft account during first setup (or "OOBE" as Microsoft name it), Windows 11 will upload your disk encryption recovery key to your Microsoft account, and now Microsoft can assist others (like law enforcement agencies) in decrypting your disk... Now what?Windows Device Encryption introduction, and how to reset recovery keyshttps://writee.org/orca/bitlocker-reset-recovery-key#Microsoft #Windows #Windows11 #BitLocker
       
 (DIR) Post #B4BwTF0AC8OkbqCm6C by sodiboo@gaysex.cloud
       0 likes, 0 repeats
       
       @Orca@nya.one I actually think this is reasonable. If they're doing it by default, they better damn well make it easy for users to recover their key if they accidentally lose it. and is actually easy to lose the disk encryption key locally. I did this once on a laptop I borrowed for a period of time; we swapped out the disk and I got to use my own OS for a period, but in doing so I disabled secure boot and oops now the owner's disk encryption key is Gone. and I only realized when returning it and we were met with the bitlocker recovery screen. the owner didn't knowingly set this up but suddenly their data is gone!! we were able to recover that key through the Microsoft account of course. and it wasn't a huge issue.Yes, giving Microsoft the power to decrypt my disk is not something that would make me happy. But for most users, Microsoft is the reason the disk is encrypted at all in the first place and they don't even know that if their laptop is stolen then their data is difficult to retrieve. It would be horrible for Microsoft to turn on disk encryption without users being aware of it and no way to recover the key, because that's how you lose all your files. Most users don't take backups. But disk encryption is good. This is a good default, because it's better than no encryption! The only sane alternative is to not encrypt by default at all! That's objectively worse and less secure.
       
 (DIR) Post #B4BwTFSWUh5E1nTQIq by Rairii@labyrinth.zone
       0 likes, 0 repeats
       
       @sodiboo @Orca i have heard of anecdotes of automatic bitlocker causing actual data lossthe current default bitlocker settings are less secure than they could be too, when MS tried to change them retroactively it caused issues and the change got reverted...