> daily_signal(2026_08_01)

Windows quietly started scanning the photos on your PC, your data is fighting to become your price, and a Russian implant just outlived a full wipe of the mail server.

PickBits Daily Signal · Saturday, August 1, 2026

By Mark Pickering · 8 min read · August 1, 2026

// tl;dr

Three of today's four stories land in the same sore spot, just from different directions. Something you figured was yours, the photos on your own PC, the price you get quoted, the mail server your company runs, turned out to be a lot more reachable than you thought. We have been on the biometric one for weeks, from face-as-payment to the little cottage industry of glasses people are buying to duck security cameras; this week it climbed onto your own hard drive. The pricing fight goes back further. We covered Maryland banning AI-driven dynamic pricing in food back in May, then the forty-odd copycat bills that followed across two dozen states, and today it is California's turn plus a San Francisco vote that just stalled.

The Exchange story is the one to forward to whoever runs your mail server, because the ugly, useful detail is that the patch does not make you clean. And the last one is the good news, and it is real: Cambridge put a map of the planet's land online, free, and fine enough to watch a single small farm. I am still holding even that one at arm's length, because we just flagged this week that the same satellite AI can fake a field as easily as read one.

Microsoft is indexing your photos, an algorithm is pricing you by name, a Russian crew is squatting in patched inboxes, and a Cambridge lab just handed the smallest farms a satellite.

1. Microsoft put a face-scanning photo app on your PC, and left out the part where you agree to it.

OneDrive Photos indexes your local pictures before you sign in, the People feature reads faces, and there is no uninstall button.

Sometime in late July, an app called OneDrive Photos began appearing on Windows 11, first spotted by Windows Latest. It indexes your local photo library with AI and natural-language search, and it can detect and display images stored on your PC even when you are not signed into a Microsoft account. You cannot remove it on its own; getting rid of OneDrive Photos means uninstalling the OneDrive client entirely. Its People face-grouping feature is opt-in, and Microsoft's stated reason is the tell: facial data may count as biometric information in some jurisdictions, such as Illinois under its Biometric Information Privacy Act, or BIPA.

That opt-in line is not a courtesy. It is a company drawing a legal perimeter around the one feature that carries real liability, while shipping the rest as the default. We have been watching face recognition creep closer for weeks, just from the other side of the camera. We covered face-as-payment, and the little market that popped up for glasses that hide you from cameras, and every time the story was the same: the recognition kept getting closer to you. Now it is on the machine on your desk, indexing your own photos, with no consent screen and no clean way out.

Screenshot of Decrypt's report on Microsoft's OneDrive Photos face-scanning app on Windows 11
decrypt.co · July 29, 2026

Why this matters: The default just changed under you. A photo library that used to sit inert on your drive is now indexed by an AI that can group faces, and the switch to turn the app off is missing. My own read is that the opt-in on face-grouping is less about your privacy than about Microsoft's exposure under laws like BIPA, because that is the exact feature a class action would name first. Whatever you make of the convenience, nobody voted for indexed-by-default, and that is the part worth noticing.

Action this week: The five minutes I'd spend is in Settings, then Apps, checking whether OneDrive Photos is on your machine and leaving the People feature off unless you genuinely want it. If you live in Illinois or another state with a biometric-privacy law, that BIPA line in Microsoft's own fine print is not boilerplate, it is the lever a resident actually has standing to pull, so reading the state statute once is worth it. And if you manage a fleet of Windows machines, the thing I'd get answered is whether OneDrive Photos is indexing local drives before sign-in on managed devices, because that is a data-processing fact you may have to document.

decrypt.co: Microsoft quietly adds a Windows app that wants to scan your face and your OneDrive (July 29, 2026)
techtimes.com: OneDrive Photos silently installs on Windows 11 with biometric-scan capability and no removal path (July 30, 2026)
tech.yahoo.com: Microsoft quietly adds a Windows app that wants to scan your face (July 2026)

2. You and your neighbor can pay two different prices for the same thing, and the vote to stop it just stalled.

EFF is backing California's A.B. 2654 to ban surveillance pricing; San Francisco's supporting resolution stalled after Chamber of Commerce pushback.

You and the person next door can open the same product online and get two different prices, and that gap is not a sale you missed. It is a number built out of what a retailer thinks it knows about you. In a July 28 Deeplinks post, the Electronic Frontier Foundation's Matthew Guariglia and Hayley Tsukayama backed California's A.B. 2654, from Assemblymember Chris Ward, which would ban surveillance pricing: charging different people different prices for the same product based on harvested personal data. The FTC has found these systems used to charge more to vulnerable shoppers; EFF's example is a person profiled as a new parent being shown pricier baby thermometers on the first page of results, keyed to zip code and time of purchase.

The public mechanism is where this stalled. San Francisco's Board of Supervisors introduced a resolution supporting the bill, then held the vote after the SF Chamber of Commerce pushed back, and EFF wrote the supervisors a letter urging them to reconsider. This is not new ground for us. We covered Maryland becoming the first US state to ban AI-driven dynamic pricing in food retail back in May, and the wave of more than forty pricing bills that followed across two dozen states. Surveillance pricing is the same fight one layer down: not just what an algorithm charges, but the data harvesting that feeds it a number.

Screenshot of the EFF Deeplinks post urging San Francisco not to fall for the industry defense of surveillance pricing
eff.org · July 28, 2026

Why this matters: The price you see is increasingly a guess about how much you, specifically, will pay, built from where you live and how you shop. EFF's argument, and the part I find most damning, is that the profiling is often wrong and still costs you, because the system does not need to be accurate to charge you more, it only needs to be confident. And once your price is set by your data, comparison shopping stops working, which is the whole point of comparison shopping.

Action this week: If you are in California, the thing worth doing is tracking A.B. 2654 before it gets watered down in committee, because the industry is already lobbying the definitions. In San Francisco, that stalled Board resolution is a vote your supervisor still has to take, and a resident writing in on it is the local lever here. And for everyone else, the move I'd actually make tonight is boring: comparison-shop from a logged-out, cookie-cleared session, and treat a price that moves between your phone and your laptop as data worth a screenshot.

eff.org: San Francisco, don't fall for the industry defense of surveillance pricing (July 28, 2026)

PickBits Daily Signal is free. If it lands in your inbox every day and it is worth something to you, the best way to support it is to forward it to someone who would read it. Subscribe today!

3. If you run Exchange, the patch is not the fix, and a Russian implant is the reason.

Laundry Bear is exploiting an Outlook Web Access flaw with OWAReaper, an implant that survives credential resets and a full re-image of the machine.

If you own an on-premise Exchange server, the uncomfortable fact this week is that applying Microsoft's patch does not make you clean. On July 30, researchers disclosed that a Russian state-linked crew tracked as Laundry Bear, also called Void Blizzard, is exploiting CVE-2026-42897, a CVSS 8.1 cross-site-scripting flaw in Microsoft Exchange Outlook Web Access, to plant an implant called OWAReaper, an evolution of the earlier ZimReaper. The malware survives browser reboots, credential rotation, and even a full re-image of the machine, holding mailbox access through server-side persistence that has to be removed from the Exchange server deliberately. The campaign has been active since July 22, on infrastructure dating to March, and has hit US and European government agencies plus telecom, financial, hospitality, and aerospace targets.

Microsoft flagged the bug in May and has shipped a patch, and that patch is genuinely step one. But the load-bearing fact for anyone running on-prem Exchange is that a fix closes the door; it does not evict a guest already inside. This is the Russian-state-intrusion beat we keep landing on, and the lineage matters: OWAReaper grew out of ZimReaper, the Zimbra webmail implant flagged in a recent international alert. The crew iterates on webmail persistence, which is why treating a patched-but-previously-exposed server as clean is the exact mistake they are counting on.

Screenshot of The Hacker News report on Russian hackers exploiting the Microsoft Exchange OWA flaw with OWAReaper
thehackernews.com · July 30, 2026

Why this matters: If your Exchange server sat exposed to the internet before you patched, patching it did not close the incident. OWAReaper is built specifically to outlast the two things most teams reach for first, the credential reset and the re-image, so the usual cleanup checklist can hand you a false all-clear. The trap is treating a patched box as a clean one while the implant has been sitting on the server the whole time.

Action this week: The question I'd put to my team in writing is not are we patched, it is have we hunted OWAReaper on every Exchange box that ever faced the internet, and rotated the OWA session secrets. I'd treat any previously exposed server as compromised until proven otherwise, and follow the removal steps in the vendor write-ups rather than assuming the update did the job. And if you are in government, telecom, finance, hospitality, or aerospace, the honest move is to bump Exchange threat-hunting to the top of this week's queue and tell whoever owns that server why.

thehackernews.com: Russian hackers exploit Microsoft OWA flaw to deploy OWAReaper implant (July 30, 2026)
techtimes.com: Russian hackers breached Exchange servers; OWAReaper implant survives re-imaging (July 30, 2026)

4. Cambridge gave away an AI map of the planet's land that can finally see the world's smallest farms.

TESSERA compresses eight years of free satellite imagery into 128 numbers per 10-metre patch, released open under CC-BY, and it matched Google DeepMind's Earth model.

A free AI map of the entire planet's land just went online, and it is detailed enough to watch a single smallholder's field from space. University of Cambridge researchers released TESSERA, an open Earth-observation foundation model that squeezes years of European Space Agency Sentinel imagery, 2017 through 2025, into a compact fingerprint: a string of 128 numbers for every 10-metre-by-10-metre patch of the Earth's land, stored in a freely accessible database called GeoTessera under a CC-BY license. It was trained on AMD Instinct MI325X GPUs with the cloud provider Vultr, and the full pipeline is openly reproducible. Cambridge frames 10-metre crop-health and yield forecasting as a boon for smallholders in developing regions, whose sub-hectare fields are poorly served by satellite tools built for large industrial farms. In independent benchmarks, TESSERA matched or outperformed rivals, including Google DeepMind's AlphaEarth.

Satellite crop intelligence has always needed a well-funded agency and serious compute, and the smallholders working sub-hectare plots were exactly who it left out. TESSERA turns decades of free public archives into a per-patch fingerprint fine enough to track one small field's health, stress, and yield, and hands it over for anyone to build on. It is still a released model that beat a benchmark, though, not a crop anyone has actually saved yet. And the same week gave us a reason to keep one hand on the brake: we flagged that the same satellite AI that reads a field can fake a convincing image of one, so an open map of the Earth is only as trustworthy as whoever builds on top of it.

Screenshot of IT Brief's report on Cambridge releasing the open TESSERA AI map of Earth's land surface
itbrief.co.uk · July 24, 2026

Why this matters: The gap TESSERA closes is not resolution for its own sake, it is who gets to use it. A smallholder co-op or an aid agency working sub-hectare plots has never had a crop-tracking tool that could actually see their fields, and now the model and the pipeline are free to reproduce. The part I find genuinely hopeful is that Cambridge gave the whole thing away for free and it still matched Google DeepMind's own model. Usually going open means settling for a weaker tool; here it did not.

Action this week: This one is a watch, not a to-do. What I'd keep an eye on is whether the GeoTessera embeddings reach the hands that matter, the farm co-ops, the crop insurers, the agriculture ministries in data-poor regions, because a model on a server is not a fed family yet. If you work in agtech, climate, or development, the concrete move is to benchmark TESSERA against your own remote-sensing pipeline before commissioning new labelled satellite data. And keep the fabrication caveat attached: the same tooling that reads a field can invent one, so provenance still matters.

itbrief.co.uk: Cambridge releases open AI map of Earth's land surface (July 24, 2026)
meteorologicaltechnologyinternational.com: Cambridge AI tool converts satellite archives into accessible Earth intelligence (July 2026)

» What to watch this week

Tomorrow's signal lands here.