Computing
Microsoft's Global Device Identifier Revealed as Tracking Tool in Cybercrime Case
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A US court filing has disclosed that Microsoft's Global Device Identifier (GDID) tracks user behavior across Windows installations. This persistent key, tied to every Windows OS since Vista, is generated on Microsoft's servers and stored locally, enabling tracking of various services like Edge and the Microsoft Store. The GDID was instrumental in tracing a cybercriminal, Peter Stokes, who was arrested for a major data breach involving a jewelry retailer. Stokes used the GDID while accessing the victim's site through a VPN, leading to his identification by the FBI. While Microsoft claims the GDID is for internal use, its lack of transparency raises concerns among users and security experts. The incident highlights the potential misuse of such tracking mechanisms in cybercrime.
Key Points: • Microsoft's GDID tracks user behavior across all Windows installations since Vista. • The GDID played a crucial role in identifying a cybercriminal linked to a major data breach. • Concerns have been raised about the transparency and privacy implications of the GDID.