Live data from Hacker News

Chat Control 1.0 and 2.0 Explained

fightchatcontrol.eu

211–220 of 385 posts

Re: Chat Control 1.0 and 2.0 Explained

#211

Earlier quoted context omitted.

[flagged]

This comment adds zero value. Make a point if you have one.

It is dishonest and unreasonable to demand that a pile of utter nonsense is answered with more energy it took to spew out bs.

Go demand that the original poster provides value.

Re: Chat Control 1.0 and 2.0 Explained

#212

Most everyone would love to see more work on stopping child sexual abuse. But this is the ultimate "grant me dictatorial powers so I can do good" play. Rather than narrow and specific - it's a broad based law that suddenly touches everyone even though offenders are a small percentage and should be able to be targeted more efficiently.

Yep, and this is a perfect example of a base rate fallacy situation... even if the scanner is 99.99% accurate, because an even higher percentage of photos are innocent, most matches the scanner will find will be false positives.

I thought this was known as Bonferonni'a principle? Or am I getting mixed up?

Re: Chat Control 1.0 and 2.0 Explained

#213

To everyone who wants to dismantle the EU: this is not the solution. Dismantling the EU is like burning down your own house just to get rid of flies. The UK left the EU and implemented its own version of chat control - Online Safety Act - without any transparency or real opposition. The right solution is the political fight. Europe is our home. We must keep it in good shape by getting rid of anything that makes it wo…

Look at this other piece in the frontpage:

> Every new car sold in the European Union must include a driver monitoring camera (allaboutcookies.org)

the eu should never have been born. The above are its results - and just an example. How do we fix that disaster?

Re: Chat Control 1.0 and 2.0 Explained

#214

Earlier quoted context omitted.

> even if the scanner is 99.99% accurate, because an even higher percentage of photos are innocent, most matches the scanner will find will be false positives. If the scanner is 99.99% accurate, then most classifications will be correct.

If you scan 1,000,000 pictures (with let's say 10 CSAM), you'll have 100 false positives and 10 true positives, giving you like only 10% correct results

Ah, sorry, I misread what the OP meant by "matches" - thought they were referring to all classifier outputs, while they specifically meant the positives. I changed my original comment to better reflect what I meant, even though that makes it a bit of a non-sequitur now.

Re: Chat Control 1.0 and 2.0 Explained

#215

How do they scan e2e encrypted messages? Will they force apps/OSes to have master keys/institutional backdoors to have access to the private keys?

They could make all e2ee chats, group chats. Where instead of a 1-1 chat between two people or many-many chat between a lot of people, they do 1-1+1 or many-many+1, where the +1 is the government. Technically the underlaying company or anyone else still won't have access to messages and e2ee won't be "broken", except for the fact that there's one more party in the key exchange. Or they scan at the edge on the user's…

Good thinking. Didn't think of that approach. Gonna start sending huge walls of text to DOS them then if this thing lands

Re: Chat Control 1.0 and 2.0 Explained

#216
post #72
post #31

I don't understand. How does it affect encrypted messages? It seems like either you need: 1. allow MITM decryption by a privileged authority 2. require all devices doing E2EE have a non-user-modifiable piece of functionality to scan on-device The second is the Apple style on-device CSAM scanner? I have to say that I do sometimes think about it while taking a photo of my baby playing in the bathtub - photos like my pa…

Apple's proposal was only for photos being uploaded to iCloud and not local ones. IIRC weren't there some thoughts that they'd switch iCloud to E2E but add local scanning on upload (compare to what it currently when Apple, Google, etc. freely scan all your cloud photos anyway). That didn't seem like a terrible deal on paper.

What does "scanning" mean though?

Does this mean every parent has to now make sure not to take pictures of their children playing in bath for instance, in order not to trip these scans for false positives?

Re: Chat Control 1.0 and 2.0 Explained

#217

Most everyone would love to see more work on stopping child sexual abuse. But this is the ultimate "grant me dictatorial powers so I can do good" play. Rather than narrow and specific - it's a broad based law that suddenly touches everyone even though offenders are a small percentage and should be able to be targeted more efficiently.

Technology is, furthermore, the wrong place to address child abuse of any kind, sexual or otherwise.

This is like trying to prevent burglary by working with the factory that manufactures pry bars.

Re: Chat Control 1.0 and 2.0 Explained

#218
post #72
post #31

I don't understand. How does it affect encrypted messages? It seems like either you need: 1. allow MITM decryption by a privileged authority 2. require all devices doing E2EE have a non-user-modifiable piece of functionality to scan on-device The second is the Apple style on-device CSAM scanner? I have to say that I do sometimes think about it while taking a photo of my baby playing in the bathtub - photos like my pa…

Apple's proposal was only for photos being uploaded to iCloud and not local ones. IIRC weren't there some thoughts that they'd switch iCloud to E2E but add local scanning on upload (compare to what it currently when Apple, Google, etc. freely scan all your cloud photos anyway). That didn't seem like a terrible deal on paper.

No. iCloud Photos and Files are and have always been non-e2ee and they already scan everything in it.

Even with e2ee enabled for iCloud Photos/files (which NOBODY uses, and furthermore is entirely disabled in the UK), it sends identifying hashes of plaintext file content to the server without e2ee.

Re: Chat Control 1.0 and 2.0 Explained

#219

Most everyone would love to see more work on stopping child sexual abuse. But this is the ultimate "grant me dictatorial powers so I can do good" play. Rather than narrow and specific - it's a broad based law that suddenly touches everyone even though offenders are a small percentage and should be able to be targeted more efficiently.

The bad consequences are diffuse, abstract and distant (conspiracy-looking, tinfoil-like), while it's very easy to viscerally understand that "even if they just save one child, it's already worth it". They should give precise numbers of how many such crimes are detected via such means or are expected to be detected per year, and how many of those are not possible to catch through regular investigative work. It just s…

Yeah, and also how many such crimes are actually prosecuted because you know, there is certain island with certain high-ranked people.

Anyways, once that implemented noone will report to you and there will be no means of pushing against it because all your online efforts to coordinate will be compromised.

Re: Chat Control 1.0 and 2.0 Explained

#220
> Is scanning mandatory? - No — voluntary.

Voluntary for whom? The service provider? Can I opt out of getting scanned?

> Does it touch encrypted messages? - No. End-to-end encrypted communications were never scanned but providers could deploy client-side scanning under this law.

So it circumvents e2e encryption?

---

How would these laws prevent me from just side loading my own open source client?

Post reply on HN