Microsoft reportedly gave BitLocker keys to authorities

bastik-1001

Moderator
Staff member
Forbes reports that Microsoft gave BitLocker keys to authorities, which is possible whenever you store a copy of your key on their servers. Microsoft may enabled that so you won't lose the key, but this also means that at the very least law enforcement agencies will also be able to get access to your encrypted data. This may include even more actors, as some hackers could also gain access to those servers, as the BBC reported.

It's possible to remove the key from the Microsoft account, although I am not convinced that this rules out all actors, who may have already made a copy.

This appears to be a good idea to highlight the usefulness of open source tools like DiskCryptor or VeraCrypt, where only you have the key(s), where you can look into the source code. The latter has been audited, while DiskCryptor isn't as widely known and therefore has not been thoroughly poked at, but it isn't an opaque box, either.

As always, back up your data and back up your keys!

Edit: Typo fix.
 
Last edited:
Back
Top