Windows Recall: A Critical Security Vulnerability for ATMs and Infrastructure
It is a scenario many cybersecurity professionals wish were not true, yet the reality is undeniable. Microsoft’s latest feature, Windows Recall, is marketed as a “safety” tool designed to enhance user experience by remembering activity. However, in the context of enterprise security, it represents a massive liability that should never be enabled—especially within critical environments.
The risk becomes existential when considering the versions of Windows intended for ATM use and other critical infrastructure.
The Dangers of Windows Recall in Critical Systems
Windows Recall essentially captures a searchable history of screen activity. While controversial on personal devices, this functionality poses a catastrophic threat to high-security environments:
Financial Terminals (ATMs): Recording screen history on an ATM could inadvertently log sensitive transaction data, maintenance credentials, or customer PII.
Public Infrastructure: Systems managing power, water, or transit rely on absolute data sterility. A “feature” that logs historical activity provides a roadmap for attackers if a system is breached.
For system administrators managing Windows IoT or Enterprise environments, the directive is clear: Windows Recall must be disabled. It is not merely a feature to ignore; it is a security hole that contradicts the fundamental principles of hardening critical infrastructure.
To test if your windows has recall try in power shell.
Dism /Online /Get-Featureinfo /Featurename:Recall
How to get rid of this "FEATURE"
Dism /Online /Disable-Feature /Featurename:Recall
One missing app is ms store. But that could be enabled. And make sure to turn of edge from startup as for another “REASON” its enabled.
Enable windows store app. Download the package and use instruction.
https://github.com/minihub/LTSC-Add-MicrosoftStore/releases/tag/LTSC-Add-MicrosoftStore-24H2
Option to create offline account when os is installed, press Shift + F10 when os runs.
OOBE\BYPASSNRO
or
start ms-cxh:localonly
I’ll try to update this post with what’s work what’s not.
I was originally planed to switch to Linux, but some of apps that i use are not to Linux friendly. Someday that day will come.
If you want ondrive donwload and install it from
https://support.microsoft.com/en-us/office/onedrive-release-notes-845dcf18-f921-435e-bf28-4e24b95e5fc0#osversion=downloads