Connect with us

Technology

Microsoft crosses privacy line few expected

Published

on

Microsoft crosses privacy line few expected

NEWYou can now listen to Fox News articles!

For years, we’ve been told that encryption is the gold standard for digital privacy. If data is encrypted, it is supposed to be locked away from hackers, companies and governments alike. That assumption just took a hit. 

In a federal investigation tied to alleged COVID-19 unemployment fraud in Guam, a U.S. territory where federal law applies, Microsoft confirmed it provided law enforcement with BitLocker recovery keys. Those keys allowed investigators to unlock encrypted data on multiple laptops.

This is one of the clearest public examples to date of Microsoft providing BitLocker recovery keys to authorities as part of a criminal investigation. While the warrant itself may have been lawful, the implications stretch far beyond one investigation. For everyday Americans, this is a clear signal that “encrypted” does not always mean “inaccessible.”

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

Advertisement

HACKERS ABUSE GOOGLE CLOUD TO SEND TRUSTED PHISHING EMAILS

In the Guam investigation, Microsoft provided BitLocker recovery keys that allowed law enforcement to unlock encrypted laptops. (David Paul Morris/Bloomberg via Getty Images)

What happened in the Guam BitLocker case?

Federal investigators believed three Windows laptops held evidence tied to an alleged scheme involving pandemic unemployment funds. The devices were protected with BitLocker, Microsoft’s built-in disk encryption tool enabled by default on many modern Windows PCs. BitLocker works by scrambling all data on a hard drive so it cannot be read without a recovery key. 

Users can store that key themselves, but Microsoft also encourages backing it up to a Microsoft account for convenience. In this case, that convenience mattered. When served with a valid search warrant, Microsoft provided the recovery keys to investigators. That allowed full access to the data stored on the devices. Microsoft says it receives roughly 20 such requests per year and can only comply when users have chosen to store their keys in the cloud.

We reached out to Microsoft for comment, but did not hear back before our deadline.

Advertisement

How Microsoft was able to unlock encrypted data

According to John Ackerly, CEO and co-founder of Virtru and a former White House technology advisor, the problem is not encryption itself. The real issue is who controls the keys. He begins by explaining how convenience can quietly shift control. “Microsoft commonly recommends that users back up BitLocker recovery keys to a Microsoft account for convenience. That choice means Microsoft may retain the technical ability to unlock a customer’s device. When a third party holds both encrypted data and the keys required to decrypt it, control is no longer exclusive.”

Once a provider has the ability to unlock data, that power rarely stays theoretical. “When systems are built so that providers can be compelled to unlock customer data, lawful access becomes a standing feature. It is important to remember that encryption does not distinguish between authorized and unauthorized access. Any system designed to be unlocked on demand will eventually be unlocked by unintended parties.”

Ackerly then points out that this outcome is not inevitable. Other companies have made different architectural choices. “Other large technology companies have demonstrated that a different approach is possible. Apple has designed systems that limit its own ability to access customer data, even when doing so would ease compliance with government demands. Google offers client-side encryption models that allow users to retain exclusive control of encryption keys. These companies still comply with the law, but when they do not hold the keys, they cannot unlock the data. That is not obstruction. It is a design choice.”

Finally, he argues that Microsoft still has room to change course. “Microsoft has an opportunity to address this by making customer-controlled keys the default and by designing recovery mechanisms that do not place decryption authority in Microsoft’s hands. True personal data sovereignty requires systems that make compelled access technically impossible, not merely contractually discouraged.”

In short, Microsoft could comply because it had the technical ability to do so. That single design decision is what turned encrypted data into accessible data.

Advertisement

“With BitLocker, customers can choose to store their encryption keys locally, in a location inaccessible to Microsoft, or in Microsoft’s consumer cloud services,” a Microsoft spokesperson told CyberGuy in a statement. “We recognize that some customers prefer Microsoft’s cloud storage, so we can help recover their encryption key if needed. While key recovery offers convenience, it also carries a risk of unwanted access, so Microsoft believes customers are in the best position to decide whether to use key escrow and how to manage their keys.”

WHY CLICKING THE WRONG COPILOT LINK COULD PUT YOUR DATA AT RISK

When companies hold encryption keys, lawful requests can unlock far more data than most people expect. (Kurt “CyberGuy” Knutsson)

Why this matters for data privacy

This case has reignited a long-running debate over lawful access versus systemic risk. Ackerly warns that centralized control has a long and troubling history. “We have seen the consequences of this design pattern for more than two decades. From the Equifax breach, which exposed the financial identities of nearly half the U.S. population, to repeated leaks of sensitive communications and health data during the COVID era, the pattern is consistent: centralized systems that retain control over customer data become systemic points of failure. These incidents are not anomalies. They reflect a persistent architectural flaw.”

When companies hold the keys, they become targets. That includes hackers, foreign governments and legal demands from agencies like the FBI. Once a capability exists, it rarely goes unused.

Advertisement

How other tech giants handle encryption differently

Apple has designed systems, such as Advanced Data Protection, where it cannot access certain encrypted user data even when served with government requests. Google offers client-side encryption for some services, primarily in enterprise environments, where encryption keys remain under the customer’s control. These companies still comply with the law, but in those cases, they do not possess the technical means to unlock the data. That distinction matters. As encryption experts often note, you cannot hand over what you do not have.

What we can do to protect our privacy

The good news is that personal privacy is not gone. The bad news is that it now requires intention. Small choices matter more than most people realize. Ackerly says the starting point is understanding control. “The main takeaway for everyday users is simple: if you don’t control your encryption keys, you don’t fully control your data.”

That control begins with knowing where your keys are stored. “The first step is understanding where your encryption keys live. If they’re stored in the cloud with your provider, your data can be accessed without your knowledge.”

Once keys live outside your control, access becomes possible without your consent. That is why the way data is encrypted matters just as much as whether it is encrypted. “Consumers should look for tools and services that encrypt data before it reaches the cloud — that way, it is impossible for your provider to hand over your data. They don’t have the keys.” Defaults are another hidden risk. Many people never change them. “Users should also look to avoid default settings designed for convenience. Default settings matter, and when convenience is the default, most individuals will unknowingly trade control for ease of use.”

When encryption is designed so that even the provider cannot access the data, the balance shifts back to the individual. “When data is encrypted in a way that even the provider can’t access, it stays private — even if a third party comes asking. By holding your own encryption keys, you’re eliminating the possibility of the provider sharing your data.” Ackerly says the lesson is simple but often ignored. “The lesson is straightforward: you cannot outsource responsibility for your sensitive data and assume that third parties will always act in your best interest. Encryption only fulfills its purpose when the data owner is the sole party capable of unlocking it.” Privacy still exists. It just no longer comes by default.

Advertisement

700CREDIT DATA BREACH EXPOSES SSNS OF 5.8M CONSUMERS

Reviewing default security and backup settings can help you keep control of your private data. (Kurt “CyberGuy” Knutsson)

Practical steps you can take today

You do not need to be a security expert to protect your data. A few practical checks can go a long way.

1) Start by checking where your encryption keys live

Many people do not realize that their devices quietly back up recovery keys to the cloud. On a Windows PC, sign in to your Microsoft account and look under device security or recovery key settings. Seeing a BitLocker recovery key listed online means it is stored with Microsoft. 

For other encrypted services, such as Apple iCloud backups or Google Drive, open your account security dashboard and review encryption or recovery options. Focus on settings tied to recovery keys, backup encryption, or account-based access. When those keys are linked to an online account, your provider may be able to access them. The goal is simple. Know whether your keys live with you or with a company.

Advertisement

2) Avoid cloud-based key backups unless you truly need them

Cloud backups are designed for convenience, not privacy. If possible, store recovery keys offline. That can mean saving them to a USB drive, printing them and storing them in a safe place, or using encrypted hardware you control. The exact method matters less than who has access. If a company does not have your keys, it cannot be forced to turn them over.

3) Choose services that encrypt data before it reaches the cloud

Not all encryption works the same way, even if companies use similar language. Look for services that advertise end-to-end or client-side encryption, such as Signal for messages, or Apple’s Advanced Data Protection option for iCloud backups. These services encrypt your data on your device before it is uploaded, which means the provider cannot read it or unlock it later. Here is a simple rule of thumb. If a service can reset your password and restore all your data without your involvement, it likely holds the encryption keys. That also means it could be forced to hand over access. When encryption happens on your device first, providers cannot unlock your data because they never had the keys to begin with. That design choice blocks third-party access by default.

4) Review default security settings on every new device

Default settings usually favor convenience. That can mean easier recovery, faster syncing and weaker privacy. Take five minutes after setup and lock down the basics.

iPhone: tighten iCloud and account recovery

Turn on Advanced Data Protection for iCloud (strongest iCloud protection)

Advertisement
  • Open Settings
  • Tap your name
  • Tap iCloud
  • Scroll down and tap Advanced Data Protection
  • Tap Turn On Advanced Data Protection
  • Follow the prompts to set up Account Recovery options, like a Recovery Contact or Recovery Key

Review iCloud Backup

  • Open Settings
  • Tap your name
  • Tap iCloud
  • Tap iCloud Backup
  • Decide if you want it on or off, based on your privacy comfort level

Strengthen your Apple ID security

  • Open Settings
  • Tap your name
  • Tap Sign-In & Security
  • Make sure Two-Factor Authentication (2FA) is turned on and review trusted phone numbers and devices
  • Review trusted phone numbers and devices

Android: lock your Google account and backups

Review and control device backup

Settings may vary depending on your Android phone’s manufacturer.

  • Open Settings
  • Tap Google
  • Tap Backup (or All services then Backup)
  • Tap Manage backup
  • Choose what backs up and confirm which Google account stores it

NEW ANDROID MALWARE CAN EMPTY YOUR BANK ACCOUNT IN SECONDS

Strengthen your screen lock, since it protects the device itself

Settings may vary depending on your Android phone’s manufacturer.

  • Open Settings
  • Tap Security or Security & privacy
  • Set a strong PIN or password
  • Turn on biometrics if you want, but keep the PIN strong either way

Secure your Google account

Settings may vary depending on your Android phone’s manufacturer.

Advertisement
  • Open Settings
  • Tap Google
  • Tap Manage your Google Account
  • Go to Security
  • Turn on 2-Step Verification and review recent security activity

Mac: enable FileVault and review iCloud settings

Turn on FileVault disk encryption

  • Click the Apple menu
  • Select System Settings
  • Click Privacy & Security
  • Scroll down and click FileVault
  • Click Turn On
  • Save your recovery method securely

Review iCloud syncing

  • Open System Settings
  • Click your name
  • Click iCloud
  • Review what apps and data types sync
  • Turn off anything you do not want stored in the cloud

Windows PC: check BitLocker and where the recovery key is stored

Confirm BitLocker status and settings

  • Open Settings
  • Go to Privacy & security
  • Tap Device encryption or BitLocker (wording varies by device)

Check whether your BitLocker recovery key is stored in your Microsoft account

  • Go to your Microsoft account page
  • Open Devices
  • Select your PC
  • Look for Manage recovery keys or a BitLocker recovery key entry
  • If you see a key listed online, it means the key is stored with Microsoft. That is why Microsoft was able to provide keys in the Guam case.

If your account can recover everything with a few clicks, a third party might be able to recover it too. Convenience can be helpful, but it can also widen access.

5) Treat convenience features as privacy tradeoffs

Every shortcut comes with a cost. Before enabling a feature that promises easy recovery or quick access, pause and ask one question. If I lose control of this account, who else gains access? If the answer includes a company or third party, decide whether the convenience is worth it. 

These steps are not extreme or technical. They are everyday habits. In a world where lawful access can quietly become routine access, small choices now can protect your privacy later.

Strengthen protection beyond encryption

Encryption controls who can access your data, but it does not stop every real-world threat. Once data is exposed, different protections matter.

Advertisement

Strong antivirus software adds device-level protection

Strong antivirus software helps block malware, spyware and credential-stealing attacks that can bypass privacy settings altogether. Even encrypted devices are vulnerable if malicious software gains control before encryption comes into play.

The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.

Get my picks for the best 2026 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com

An identity theft protection service helps when exposure turns into fraud

If personal data is accessed, sold, or misused, identity protection services can monitor for suspicious activity, alert you early and help lock down accounts before damage spreads. Identity Theft companies can monitor personal information like your Social Security Number (SSN), phone number and email address, and alert you if it is being sold on the dark web or being used to open an account. They can also assist you in freezing your bank and credit card accounts to prevent further unauthorized use by criminals.

See my tips and best picks on how to protect yourself from identity theft at Cyberguy.com.

Advertisement

Kurt’s key takeaways

Microsoft’s decision to comply with the BitLocker warrant may have been legal. That doesn’t make it harmless. This case exposes a hard truth about modern encryption. Privacy depends less on the math and more on how systems are built. When companies hold the keys, the risk falls on the rest of us.

Do you trust tech companies to protect your encrypted data, or do you think that responsibility should fall entirely on you? Let us know by writing to us at Cyberguy.com.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

Copyright 2026 CyberGuy.com.  All rights reserved.

Advertisement

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Technology

YouTube now lets you turn off Shorts

Published

on

YouTube now lets you turn off Shorts

YouTube’s time management settings now have an option to put a zero-minute time limit on Shorts, effectively removing them from your app in Android and iOS. The option is an update to the Shorts timer YouTube originally announced in October; the lowest previous option was 15 minutes.

The feature was expanded in January to give parents some control over how long their kids spend scrolling through Shorts, with an option for zero minutes “coming soon.” According to YouTube spokesperson Makenzie Spiller, the option to set the timer to zero is now “live for all parents, and is currently being rolled out to everyone,” including users with regular adult accounts.

Regardless of age, it can be a handy tool for anyone who wants to spend a little less time scrolling. The Shorts tab won’t show any videos once you hit your limit, just a notification that you’ve “reached your Shorts feed limit.” In our tests, hitting the time limit also removes Shorts from the Home screen, so by setting the timer to zero you can ignore Shorts entirely if you want. To turn on the timer, go to the settings in the YouTube app and select “time management” then toggle on the Shorts feed limit and select a time for it.

Continue Reading

Technology

5 worrisome privacy clauses hidden in smart home devices

Published

on

5 worrisome privacy clauses hidden in smart home devices

NEWYou can now listen to Fox News articles!

Many of the apps and devices we use every day contain privacy terms most people never read. Yet those clauses often allow extensive data harvesting, behavioral tracking and long-term storage of personal information. Some even allow companies to access recordings or share data with partners.

Advertisement

The reality is simple. Smart devices inside your home and car can build detailed profiles about your daily life. Your schedule. Your habits. Even your conversations. One way I explain this to people is simple. Your phone knows where you go. Your smart home knows what you do when you get there. I unpack how this works in everyday life on my Beyond Connected podcast at getbeyondconnected.com. In many cases, these devices are not just reacting to you. They are actively logging, analyzing, and storing your behavior by default, often without you realizing it.

Let’s walk through five privacy clauses that surprise most people. We will start with number five and count down to the most unsettling one.

YOUR PHONE SHARES DATA AT NIGHT: HERE’S HOW TO STOP IT

The Nest Audio, the newest speaker with a virtual assistant by Google, is being exhibited on the Android Smart Home display during the Mobile World Congress 2023 on March 2, 2023, in Barcelona, Spain. (Joan Cros/NurPhoto)

Sign up for my FREE CyberGuy Report

Advertisement
  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com trusted by millions who watch CyberGuy on TV daily.

Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.

Clause No. 5: ‘We log and share your driving data’

Today’s vehicles are no longer just transportation. Many now operate as connected computers on wheels. Connected vehicle platforms and systems, such as Android Automotive OS, collect large amounts of telemetry data.

That can include:

  • Vehicle speed
  • Seat usage
  • Climate controls
  • Location and trip data

Researchers have found that vehicles may gather dozens or even hundreds of data points during normal driving. In some cases, researchers found that vehicle speed can be logged as frequently as 25 times per second, creating a highly detailed record of how you drive.

What this means for drivers

Your car may know:

  • Where you drive
  • When you drive
  • How aggressively you accelerate or brake
  • Which seats are occupied

That data can be used to infer stops, turns, and even risky driving behavior. In some cases, it may also be shared with third parties for advertising, insurance, or financing purposes. In other words, your vehicle can create a detailed picture of your driving behavior and routines. Many drivers never realize how much information their car collects.

The new Alexa+ is powered by a more responsive AI. (iStock)

Clause No. 4: ‘We track what you watch’

Your television may be one of the most active data collectors in your home. Many smart TVs from brands like Samsung, LG, and Roku use a technology called Automatic Content Recognition, often shortened to ACR.

Advertisement

ACR can analyze what appears on your screen across:

  • Streaming apps
  • Cable television
  • Gaming consoles
  • HDMI devices

This technology works in real time, identifying what you are watching and reporting that information back to the company. Some policies even state that snippets of audio or video may be shared with third parties to match ads to your viewing. Some lawsuits have alleged that certain TVs capture screenshots extremely frequently to identify content.

Why this matters

Your TV can learn:

  • What shows you watch
  • When you watch them
  • How long you stay on each program
  • Which devices you connect to the TV

That means the show you binge, the time you watch it, and even how long you stay engaged can be packaged and sold to advertisers almost instantly. That viewing data may then be shared with advertising partners to build detailed marketing profiles.

Clause No. 3: ‘We track your behavior and location’

Video doorbells are designed to increase home security. Yet they can also gather large amounts of behavioral data. Devices like the Ring Video Doorbell may automatically collect information such as:

  • Device identifiers
  • Browsing activity
  • Usage patterns
  • Timestamps

Privacy disclosures also show that these devices can collect geolocation data, IP addresses, and details about the devices connected to your network.

What that data can reveal

Over time, a doorbell camera can build a timeline that shows:

  • When you leave home
  • When deliveries arrive
  • How often visitors come
  • Which devices connect to your network

Put together, this creates a detailed map of your daily routine, including when you are home, when you are away, and how your household operates. Individually, these signals seem harmless. Together, they can reveal detailed patterns about your household. If an account is ever compromised, that data can act as a blueprint of your life, not just a camera feed.

Clause No. 2: ‘Humans may review your recordings’

Some smart devices store recordings that help improve voice recognition and AI systems. Devices that may store recordings include:

Advertisement

Past regulatory findings have raised concerns about how companies manage that stored data. In some cases, recordings may be accessed by:

  • Human reviewers
  • Contractors
  • Internal teams that are training AI systems

Some company disclosures state that a small number of recordings may be reviewed by research and development teams to improve products and services.

Why this clause raises eyebrows

The goal of human review is often to improve voice assistants or detect errors. Still, many users never realize that recordings captured inside their homes may be reviewed by people. That means a conversation in your living room or a clip from your front door could be seen or heard by someone you have never met. Transparency about how this process works remains an ongoing discussion across the tech industry.

Clause No. 1: ‘We store your voice indefinitely’

Voice assistants sit quietly in kitchens, bedrooms, and living rooms waiting for their wake word. Devices like the Amazon Echo process voice commands in the cloud.

According to company disclosures, voice interactions can include:

  • Audio recordings sent to cloud servers
  • Transcripts stored in your account
  • Voice data used to improve services

In many cases, these recordings are saved by default and can remain stored indefinitely unless you manually delete them or change your settings.

Why this is the most surprising clause

Over time, your voice assistant may accumulate years of audio interactions. That can include everything from grocery lists and song requests to conversations you did not even realize were captured. That history can reveal daily routines, requests, shopping habits, and personal questions. Most people never review or delete those recordings.

Advertisement

Why smart devices are a privacy multiplier

Each individual device collects only part of the picture. Together, they can reveal an astonishing amount of detail about your life. Smart devices inside your home and vehicle may capture:

  • Conversations
  • Daily schedules
  • Viewing habits
  • Location history
  • Visitor patterns
  • Voice biometrics

Combined, this data allows companies to build extremely detailed behavioral profiles. That is why privacy experts call connected homes a data multiplier. In many cases, the value of that data is part of the business model, helping offset the cost of the devices themselves.

5 privacy moves to take back control of your tech

The good news is you still have ways to reduce how much information your devices collect. Here are a few practical steps that can make a big difference. 

An Amazon Echo Show 8 smart-home device during the Amazon Devices and Services event at the HQ2 campus in Arlington, Virginia, US, on Wednesday, Sept. 20, 2023. Amazon.com Inc. previewed a push into generative artificial intelligence with new features for its Alexa voice assistant. (Al Drago/Bloomberg)

 

No. 5: Audit your app permissions

Start by reviewing what access your apps have to your devices. If you use smart home apps like Ring, also check in-app privacy settings such as Control Center and turn off sharing with third parties where available.

On iPhone

Advertisement
  • Open Settings
  • Tap Privacy & Security
  • Select Location Services, Microphone or Camera
  • Review which apps have access

Whenever possible, set location access to While Using the App rather than Always.

On Android

Settings may vary depending on your Android phone’s manufacturer

DATA BROKERS ACCUSED OF HIDING OPT-OUT PAGES FROM GOOGLE

  • Open Settings
  • Tap Security and Privacy
  • Tap More privacy settings 
  • Select Permission Manager
  • Review Location, Microphone, and Camera permissions

Whenever possible, set location access to Allow only while using the app rather than Allow all the time.

Removing unnecessary permissions helps limit background tracking.

No. 4: Turn off smart TV tracking

Most TVs include a setting that controls content tracking.

Advertisement

Look for options such as:

  • ACR
  • Viewing Data
  • Interest-Based Ads

On Roku, go to Settings → Privacy → Smart TV Experience and disable it. On Samsung, look for Viewing Information Services and turn it off.

Turn these features off in the privacy or advertising section of your TV settings. 

No. 3: Use stronger passwords

Smart home devices often connect to important accounts. If attackers access those accounts, they may control cameras, speakers, or home automation systems. Use strong, unique passwords and enable two-factor authentication (2FA)  whenever available. A password manager can help generate and store secure passwords.

Next, see if your email has been exposed in past breaches. Our No. 1 password manager (see Cyberguy.com) pick includes a built-in breach scanner that checks whether your email address or passwords have appeared in known leaks. If you discover a match, immediately change any reused passwords and secure those accounts with new, unique credentials.

Check out the best expert-reviewed password managers of 2026 at Cyberguy.com.

Advertisement

5 TECH TERMS THAT SHAPE YOUR ONLINE PRIVACY

No. 2: Delete old apps and accounts

Dormant apps and forgotten services often keep your personal information for years.

Take time to:

  • Remove apps you no longer use
  • Close accounts tied to old services
  • Revoke unused permissions

Cleaning up digital clutter reduces your data footprint.

Remove apps you no longer use

On iPhone (iOS 18 and newer)

  • Find the app on your Home Screen
  • Press and hold the app icon
  • Tap Remove App
  • Tap Delete App
  • Tap Delete to confirm

You can also remove apps through storage settings:

  • Open Settings
  • Tap General
  • Tap iPhone Storage
  • Select the app
  • Tap Delete App
  • Tap Delete to confirm

Deleting the app removes it from your device and frees up storage space.

On Android (Android 14 and newer)

Advertisement

Settings may vary depending on your Android phone’s manufacturer.

  • Find the app on your Home Screen or App Drawer
  • Press and hold the app icon
  • Tap Uninstall
  • Tap OK or Uninstall to confirm

You can also remove apps through settings:

  • Open Settings
  • Tap Apps or Apps & notifications
  • Select the app you want to remove
  • Tap Uninstall
  • Tap OK or Uninstall to confirm

Removing unused apps helps reduce the amount of data stored on your device.

Revoke unused permissions

Some apps continue accessing your camera, microphone or location even when you rarely use them.

On iPhone

  • Open Settings
  • Tap Privacy & Security
  • Select a category such as Location Services, Microphone or Camera
  • Review the apps listed
  • Turn off access for apps that do not need it

You can also control tracking:

5 MYTHS ABOUT IDENTITY THEFT THAT PUT YOUR DATA AT RISK

  • Go to Settings
  • Tap Privacy & Security
  • Tap Tracking
  • Turn off tracking for apps you do not trust.

On Android

Settings may vary depending on your Android phone’s manufacturer

Advertisement
  • Open Settings
  • Tap Security & Privacy
  • Tap Privacy or More privacy settings 
  • Tap Permission Manager
  • Select Location, Camera or Microphone
  • Review the apps listed and remove access if needed

Android groups permissions by type so you can quickly see which apps access sensitive features.

A Ring security camera is seen on the fence of a home on June 1, 2023, in San Anselmo, California. Amazon has agreed to pay the Federal Trade Commission over $30 million in a privacy settlement over its Ring cameras. The company’s Ring doorbell division paid $5.8 million for violating a portion of the FTC Act that prohibits unfair or deceptive business practices and $25 million for violating the Children’s Online Privacy Protection Act by illegally retaining Alexa voice assistant profiles of thousands of children. (Justin Sullivan/Getty Images)

Today’s phones may automatically remove permissions from apps you have not used for a long time, but many apps still retain data tied to your account. Reviewing them manually helps reduce tracking and background data collection.

No. 1: Limit always-listening devices

Smart speakers constantly wait for wake words like “Alexa” or “Hey Google.” That means the microphone stays active so the device can detect commands. If you rarely use these features, limiting them can reduce how much audio data leaves your home. Here are some simple ways to reduce always-listening devices. 

Mute the microphone on smart speakers

Most smart speakers include a physical microphone mute button.

Press the mic mute button on devices like:

Advertisement
  • Amazon Echo
  • Google Nest speakers
  • Apple HomePod

When muted, the device stops listening for wake words. 

Unplug devices in private spaces

Bedrooms and home offices are common places where people prefer extra privacy. If a speaker or smart display is rarely used in those rooms, unplugging it removes the microphone entirely.

Review voice recordings in your account

Many voice assistants store past interactions. You can review and delete recordings inside the companion apps, such as:

  • Alexa app
  • Google Home app
  • Apple Home app

Set recordings to auto-delete or choose not to save them at all, where that option exists. Removing stored recordings prevents them from accumulating over time.

Disable voice activation on some devices

Some smart TVs, phones and tablets include voice assistants. Look in device settings for options such as:

  • Voice assistant
  • Voice wake word
  • Hands-free voice control

Turning those features off stops devices from constantly listening. Even though devices listen only for wake words, the microphones remain active. Limiting where these devices operate helps reduce the amount of audio data collected inside your home. 

Kurt’s key takeaways

Smart devices make daily life easier. They play music, answer questions, show visitors at the door and control lights with a voice command. But convenience often comes with hidden trade-offs. Many privacy clauses are buried deep in policies that most people never read. Over time, those permissions allow companies to gather enormous amounts of behavioral data. That does not mean you need to abandon smart technology. It simply means understanding what your devices collect and deciding what level of access you are comfortable with. Many of these settings are enabled by default, not because you chose them, but because you never knew they were there. A quick privacy audit today can prevent years of unnecessary data collection tomorrow. Oh, and if you want a deeper dive into how these hidden data practices affect your daily life, check out the latest episode of my Beyond Connected podcast at getbeyondconnected.com, where we break it down.

Here is a question worth asking yourself: If every smart device in your home combined its data into one timeline of your life, how comfortable would you feel with someone seeing it? Let us know by writing to us at Cyberguy.com.

Advertisement

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report

  • Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
  • For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com trusted by millions who watch CyberGuy on TV daily.
  • Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.

Copyright 2026 CyberGuy.com. All rights reserved.  

Advertisement
Continue Reading

Technology

The new Tomodachi Life is made to be shared — even if Nintendo doesn’t want you to

Published

on

The new Tomodachi Life is made to be shared — even if Nintendo doesn’t want you to

Tomodachi Life: Living the Dream is hard to explain. The best way to understand is to see it in action; a screenshot of Handsome Squidward and Bob Belcher falling in love over their shared appreciation of cannibalism makes it clear that, while it’s a life sim, the game is really a joke-generating machine. Living the Dream on the Nintendo Switch gives you more tools and fewer restrictions to make those jokes stranger and funnier. But while Living the Dream provides more freedom for creativity, it also has big restrictions on sharing those creations, and the game seems content with inside jokes staying within its virtual walls.

Living the Dream is the sequel to a 3DS game that, a decade ago, I called “the weirdest thing Nintendo has ever made.” It’s sort of like The Sims or Animal Crossing, and it’s also a little like a Tamagotchi. You play as an omniscient overseer of a small island that’s populated with Miis, Nintendo’s delightfully lo-fi avatar characters, and you have to feed them and make them happy by fostering relationships and playing games. As you do that, the island will expand with more residents and more things to interact with, so that eventually you’ll have a Ferris wheel, a restaurant, and a TV news station.

What makes the sequel interesting is that it really opens up what you’re able to do. The creation tools in particular are much more robust. There are lots of options for designing Miis such that, even though I am decidedly not artistically inclined, I was able to make very recognizable cartoon characters without too much effort. Notably, unlike its predecessor, Living the Dream has options for things like same-sex relationships and nonbinary characters, making it much more inclusive and open. The island itself similarly has a lot of customization options, though these slowly unlock over time.

The real meat of the experience is setting up situations and watching how things unfold. You can make characters become friends or romantic partners by literally picking them up and putting them next to each other. The game will even frequently ask you for topics that they might want to talk about, Mad Libs style. It’s an acquired taste, but for the right kind of person it can also be hilarious.

Perhaps the most remarkable thing about Living the Dream is that, at least as far as I can tell, there are no restrictions for what you can name characters or what you can make them say. To really test this, I let my 13-year-old kid run wild, tasking her with creating the most messed-up island her teenage brain could think of. Now my Switch is home to the cast of The Owl House, who love to chat to each other about Hitler, summoning Satan, and human trafficking. Nothing that she threw at the game was off-limits. (Also, I’m a little worried about her.)

Advertisement

That’s all very surprising for a Nintendo game, particularly given the company’s squeaky-clean image and family-friendly fare. And it’s almost certainly the reason why Nintendo has made it so that you can’t share screenshots and videos using the Switch’s built-in sharing features. Without getting into specifics, Nintendo wrote on a support page that the Living the Dream’s freedom can “sometimes lead to humorous, surprising, or unpredictable moments during gameplay,” but also said that “we recognize that out-of-context scenes may be misunderstood or may not reflect the spirit in which the game is intended to be enjoyed.”

Given the problems Nintendo has run into with online sharing in the past, it’s an understandable position to take. It’s also not impossible to share things; you can get around the limitation with a capture card or by simply taking photos of the Switch’s screen. Players already started doing that when Living the Dream’s demo came out.

Since much of the fun of Tomodachi Life is pushing the game to its limits to see what you can make your little Miis do, maybe Nintendo understood that there probably wasn’t any kind of filter it could put in the game that inventive players wouldn’t be able to bypass. Perhaps a full-scale sharing ban was the only option. But that decision also runs counter to the spirit of Living the Dream. Whenever I land on a really good joke, I immediately take a screenshot because I want to show it to people. My kid and I have been comparing stupid images all week trying to one-up each other.

Nintendo’s restrictions aren’t going to stop the really dedicated players. TikTok will almost certainly be flooded with even more phone camera videos of cute little Miis talking about sex and violence. Because those kinds of players are exactly who this game is for.

Tomodachi Life: Living the Dream launches on the Nintendo Switch on April 16th.

Advertisement
Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.

Continue Reading

Trending