

So how did Microsoft have the keys in the first place? The article says they are automatically uploaded to the cloud. What does that mean? They’re uploaded to the user’s on drive or something else? Because whatever that user account is shouldn’t be accessible by Microsoft, even if they run the service. I’m not saying aim surprised they do have it, but would be nice to be a little clearer about what features of Bitlocker to avoid. Is it the Microsoft account associated with the windows key? Probably.


Yep, this tracks. I wish the article was clearer about it, because to me it seems like they were indicating there was some permission involved in the choice. Which is not really the case in any meaningful sense.