Seems like this would be double encrypting OPAL self encrypting drives in the places that use those, potentially adding a further failure point.
[1] https://www.tomshardware.com/news/bitlocker-encrypts-self-en...
21–30 of 37 posts
Seems like this would be double encrypting OPAL self encrypting drives in the places that use those, potentially adding a further failure point.
[1] https://www.tomshardware.com/news/bitlocker-encrypts-self-en...
Definitely save those recovery keys, because BitLocker loves freaking out after BIOS updates or minor hardware changes. I think I had to enter mine after a GPU firmware update.
I think they're saved to your Microsoft account by default now. And, since Microsoft likes to pretend an account is required to even install Windows now, most people will likely have a linked account.
Of course that means I'm constantly bugged about using one.
Seems like this would be double encrypting OPAL self encrypting drives in the places that use those, potentially adding a further failure point.
Didn't Microsoft stop using those in BitLocker years ago because they were often borked? [1] It's a new failure point, but it's sensible. [1] https://www.tomshardware.com/news/bitlocker-encrypts-self-en...
This could lead to more data being lost than from ransomware. The best part is Windows doesn't even notify you about it. It will show you numerous useless notifications and now even ads, but it won't notify you that it has encrypted all your data. As that would be too "intrusive". I already know of one case where all data was lost. Somehow recovery key was not stored in Microsoft account.
Maybe not surprisingly, I've had a couple of tech-literate friends where they thought they were the only ones with a recovery key but it turned out (luckily, here) that MS had a copy after all.
A lot of people are about to have nasty surprises the next time they reinstall Windows because their kid downloaded some malware and realize their data is all gone.
What does this mean for users who are already encrypting their drives with something else like VeraCrypt?
I mean between bitlocker and T2 I’d rather have T2. At least with bitlocker the key is in my Microsoft account so if something happened to my pc and the drive was still intact I can easily access the data again. On a T2 secured Mac, if something happened then I’m screwed.
This could lead to more data being lost than from ransomware. The best part is Windows doesn't even notify you about it. It will show you numerous useless notifications and now even ads, but it won't notify you that it has encrypted all your data. As that would be too "intrusive". I already know of one case where all data was lost. Somehow recovery key was not stored in Microsoft account.
I think it's absurd this kind of thing would be enabled by default without very explicit warnings about the possible reprucussions of not backing up your recovery keys