Given how pedophiles are treated in prison, that might be longer than your expected lifespan if you are sent to prison because of this. Of course I'm taking it to the dark place, but you kinda gotta, you know?
Someone else could find a way to make every single possible mutation of false positive Goatse/Lemonparty/TubGirl/etc. Then some poor Apple employee has to check those out.
The Messages app will use on-device machine learning to warn about sensitive content, while keeping private communications unreadable by Apple.
Next, iOS and iPadOS will use new applications of cryptography to help limit the spread of CSAM online, while designing for user privacy.
https://www.apple.com/child-safety/
There is no ambiguity here. Of course they will scan images in the cloud as well, but they are explicit in saying that it is (also) on the device itself.
Apple is announcing 3 new ‘features’.
First one scans iMessage messages / photos on device / warns kids and partners.
Second one is the CSAM photo hash compare in iCloud upload feature.
Third one is the Siri search protection/warning feature.
But surely iCloud upload feature is on the device. And if it was only in the cloud they wouldn't need to mention iOS or iPadOS at all.
To start, once you upload something to the cloud you do - or at least are expected to - realize that it is under full control of another entity.
Because of that you might not use iCloud or you might not upload everything to iCloud.
I certainly hope you didn’t get yourself all worked up without actually understanding what you’re mad at :)
It is not related to the CSAM database feature.
Read details here: https://daringfireball.net/2021/08/apple_child_safety_initia...
The difference is photos saved are catalogued, while message photos are kept in their threads.
Will Apple scan photos saved via iMessage backup?
SHA hashes aren’t suitable for this: you can change a single bit in the header to bypass a hash check. Perceptual hashes are designed to survive cropping, rotation, scaling, and embedding but all of those things mean that false-positives become a concern. The real risk would be if someone figured out how to many plausibly innocent collisions where you could send someone a picture which wasn’t obviously contraband or highly suspicious and attempt to convince them to save it.
How frequently do most people look at their camera roll? I'd be surprised if it's more than a few times a week on average.
Does an attacker even need access to the phone? If iCloud is syncing your photos, your phone will eventually see all your pictures. Unless I've misunderstood how this works, the attacker only needs access to your iCloud account.
For me it's probably 5-7 times per day, but I also take a lot of photos.
I think a few times a week is probably low-balling it, even for an average.
If you hack my phone and plant some photos with a sufficiently old timestamp I'd never notice them. I can't imagine my situation is all that uncommon either.
This tech is just ripe for all kind of abuses.