0: https://c2pa.org/ 1: https://truepic.com/ 2: https://truepic.com/revel/
0: https://c2pa.org/ 1: https://truepic.com/ 2: https://truepic.com/revel/
But supposed you take a C2PA photo and then edit its contents with e.g. generative in-fill. The updated C2PA stamp from that action will get noted and can be audited later on.
Okay but then it's a deepfake from the BBC or some other known source, which would be bad for its reputation if people found out.
The C2PA might theoretically prevent forgery of the C2PA record, but it cannot certify that the pixels happened due to an event or due to a trick.
Sounds like the photographic equivalent of guns that put unique stamps on their fired shells - theoretically making it easier to ID the shooter.
On a tangent, a bad actor could then release HDCP keys for TVs from a big brand like Samsung and effectively invalidate all content protection for all the TVs they have already sold (afaik those can’t be remotely updated). If those keys are then revoked, there would be millions of bricked Samsung TVs.
They almost certainly can but I believe the point of the FBI making a big song and dance about unlocking that phone (which they did unlock by themselves, btw) was about trying to force Apple into allowing TLA backdoors via the court of public opinion.
Who says they can’t?
Perhaps less interestingly, single frame exposure will defeat the accidental recording of sound into pictures recently reported to be a side effect of rolling shutters.
It's more to do with surveillance and being able to more easily track someone trying to play investigative journalist, whistleblower etc. and show them their place.
For instance, if someone takes a photo of a big corporation exec giving a brown envelope to a politician and then another journalist show them to interested parties as a courtesy before publication, they could find out who took the picture and get them killed.
This is very dangerous and stupid what Sony is playing with.
OTOH, it's very hard to firmly attribute source ID in a way that cannot be faked (hashed or reconstructed after the fact).
In other words it's easy to disown, hard to own. Repudiation is a one way function.
Since we're headed for a post-truth, post-trust digital world the desirable sides of this seem to greatly outweigh the apparent "dystopian downsides".
Is this essentially just enforcement through building a moat around editing applications?