Windows now broadcasts and collects information about what you type in when you search for programs (in charm/modern shell).
That doesn't mean it goes 'upstream'. But it is startling how far we've come. I remember the days when nobody trusted the internet - not even with their credit card.
Now its hard to trust your Operating System to run a program.
TS//SI//REL) Currently CASTLECRASHER is the only production quality Windows execution technique that Payload Persistence techniques have. Another mechanism to execute DNT payloads is needed. Most pre-boot Persistence techniques only have the ability to influence an OS through modifications to the target file system. Work needs to be done to investigate other ways to get execution inside of Windows
How long until Windows OS is going to be monitored?