Live data from Hacker News

WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

theverge.com

141–150 of 372 posts

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#141
post #62

Earlier quoted context omitted.

Encryption does not help, Apple still is responsible. If Apple intends to let the user store photos in iCloud (or send by imessage) encrypted, they either have to keep the keys, so they can decrypt and scan the photos or or to keep the user from uploading incriminating content. Apple found a third way: they will only get to reconstruct the keys if the user uploads too many pictures triggering alarms.

Source? I am not aware of a law in the US that requires Apple to actively scan images, or to store them unencrypted (or keep copies of the keys).

Every cloud infrastructure holder is required for doing that. Closing an eye does not take a duty away. You must be actively pursuing that. Encryption would start flood of new laws

https://www.govinfo.gov/app/details/USCODE-2011-title18/USCO...

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#142
post #61

Earlier quoted context omitted.

There's like three major options if you want to run a FOSS smartphone, and I'll sum them up. Pinephone: Cheap. The device isn't very powerful. With people coming from an Apple device, that's a problem. Fairphone 3: Fair. The hardware isn't very powerful either, and the device is more expensive, but the product is better for the people who assembled it and the environment. Librem 5: Open. Even more expensive than Fair…

"Fairphone" It is nice the the fairphone trys to be nice and fair, but I would rather have a focus of a actual open phone under my control and they do not deliver this (not to blame them, the issue is hard). Fixing the global exploitive economy is a different issue and trying to solve everything at once is not working usually. "Librem 5" How useful is a microphone killswitch, if there is no killswitch for the speaker…

Pinephone is a certainly a good bang for the buck, but the hardware is nothing special, and the killswitches are DIP (better than nothing, like Fairphone's current iterations). If you want a cheap solution, this one's the one to opt for. Especially a good option for people who live in (relatively) poorer countries/regions than US or North/West-Europe.

A lot of people in our world simply cannot afford a Fairphone. I can, and I applaud the project, so I went for it. I also applaud the other projects, and remember that perfect is the enemy of good. That a Librem 5 isn't going to be perfect in terms of security, is OK. Its their first iteration (and they had various iterations of it, which lead to considerable delays).

There's also some keyboard smartphones such as Planet Cosmo Communicator and Planet Astro Slide. And some other ones as well such as F(x)tec (which is a good successor to Nokia N900). These are also niche, specific, with their hardware keyboard (which include custom layout such as Dvorak). But they can run alternative OSes, by default. I believe that, for me, this (hardware keyboard smartphone) is going to be the ultimate usability dream, if the keys are large enough. I previously owned a Nokia E71 and Nokia N900, before touch typing became the status quo.

> [...] I recently read a interview by the former CTO that confirms it [...]

I also backed Astro Slide (and own a Cosmo Communicator), and am disappointed with their hardware downgrade from Dimensity 1000 to 800. I hate it when promises are not kept. But it happens. As mentioned I owned a Nokia N900 previously, but I wasn't fond of the keyboard, so I hope Astro Slide's going to be better. And, given its like the Cosmo Communicator (which I am used to), I am confident it will be. The big disadvantage of Planet devices is their slow updates, and being reliant on Mediatek (MTK) which means EOL soon.

With regards to hardware keyboard I read Pinephone is planning such as well, which is great news because its otherwise such an affordable smartphone. Pine64 sells a lot of other cool FOSS stuff such as Pinecil and Pine Camera.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#143
post #108

Earlier quoted context omitted.

I still have a company issued laptop (Windows based). I don’t need a laptop for personal stuff.

If you value privacy you won't use a company laptop for personal business.

Doesn't that really depend on how you use it? They might have a separate user account or even a whole separate OS installed like I do, encrypted, and use only online services.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#144

I'm so fucking tired of these asswipes from companies are a thousand times worse pretending they are better. They literally sell all your data to anyone who wants is, but noooo, apple bad! I'm not saying apple is some kind of bastion of privacy or whatever, but at least they are not selling my data to pay for their spyware vessels. To those 'experts': Get off you high horse and do better. Prove me wrong, go build a w…

> They literally sell all your data to anyone who wants is Where/how can I buy all data for, let's say a dozen users, that facebook collects? No wonder public is completely misinformed about how ad revenue based companies operate when even on HN blatant lies are highly upvoted.

Become an advertiser. "Selling your data" is a shorthand for what actually goes on: selling your attention based on data that those platforms have on you.

Google does this too. Any brand that relies on advertising instead of sales of its actual hardware is in this game.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#145
post #6

Earlier quoted context omitted.

It’s too late either way. The fact that it even got this far through implementation says the vendor is not on my side. Not only that once capability is revealed it can be required by governments and manipulated under warrant. Particularly in some regimes, mine included, the vendor can be compelled to do something and not say anything. My comment doesn’t even cover how monumentally flawed the entire thing is either. S…

Before buying the DSLR, I'd recommend at least checking out the 1" sensor size market. These cameras still take excellent quality photos in a wide range of lighting conditions but are so much more compact than having an interchangeable lens system. I sold my DSLR a couple of years after getting my G9x Mark II. The DSLR was always gathering dust compared to the G9x which with a small belt case could easily be taken an…

There are plenty of Micro 4/3 sensors that have interchangeable lenses too though, so you don't have to be locked into a compact camera with built-in lenses. You can have the best of both worlds.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#146
post #35

So I was ignorant on the issue and completely against the approach of Apple. Then HN taught me that any company storing images on their infrastructure in the US must report pedophilic images to the US government. At this point, the approach taken by Apple seems like the best one to me, if you don't want to store pictures in clear on your servers. What other technical approach are people advocating for? Another point…

Apple aren't required to decrypt anything. This is why ever other server/storage provider are not also demanding access to everything client side (or keys to decrypt server side). It's a red herring for Apple to pretend they're "required" to do this, they're no more required to do so any more than the post office are required to open your mail on the off chance they might be handling CP...

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#147

Earlier quoted context omitted.

I find it laughable whenever someone says "this is the last straw" because it just shows how incredibly misinformed they are. Yes, backdooring E2E encryption in general is a bad idea. However, consider two things: * iCloud Photos was never E2E encrypted in the first place. They already can scan your photos all they want server-side, and they have been scanning for CSAM since 2019, while Google has been scanning for i…

> It does NOT scan photos that are not uploaded to the cloud, despite being on-device. Yet. Once it's on the device, it's a MUCH smaller step to use it in other ways. It's certainly easier fro governments to argue that they should be able to force it to be used arbitrarily... you know, for the children/terrorists/etc. > And it's important to note the threshold and manual human review system put in place before the au…

> Yet

I keep seeing this jump. There's no evidence this will happen. Apple can already technically do anything they want to compromise the security of your device in the next software update, so could Google or Samsung or any other company. But when in Apple's history have they done this? There is zero reason to believe this is the next step other than speculation and fear mongering.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#148
post #35

So I was ignorant on the issue and completely against the approach of Apple. Then HN taught me that any company storing images on their infrastructure in the US must report pedophilic images to the US government. At this point, the approach taken by Apple seems like the best one to me, if you don't want to store pictures in clear on your servers. What other technical approach are people advocating for? Another point…

>What other technical approach are people advocating for? Reduce user data stored in cloud data centres as much as possible. This is the approach taken by Whatsapp, so not surprised they are the ones most vocal against it. And at the risk of appearing to be supportive of a Facebook product, I think this is the right way to take computing. We don't need a central place to put stuff or to do compute when we can do it o…

It is a bit ironical that WhatsApp is worried about privacy. All message metadata is unecrypted and part of their business model. They don’t know about message contents, but they know everything about your social network (who do you message and when, who are part of your groups etc.) Add cross-app tracking with Facebook APIs and soon they can also categorize your message contents.

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#149
post #61

Earlier quoted context omitted.

There's like three major options if you want to run a FOSS smartphone, and I'll sum them up. Pinephone: Cheap. The device isn't very powerful. With people coming from an Apple device, that's a problem. Fairphone 3: Fair. The hardware isn't very powerful either, and the device is more expensive, but the product is better for the people who assembled it and the environment. Librem 5: Open. Even more expensive than Fair…

"Fairphone" It is nice the the fairphone trys to be nice and fair, but I would rather have a focus of a actual open phone under my control and they do not deliver this (not to blame them, the issue is hard). Fixing the global exploitive economy is a different issue and trying to solve everything at once is not working usually. "Librem 5" How useful is a microphone killswitch, if there is no killswitch for the speaker…

>phone with facebook app preinstalled and unremovable

I've never used a phone like this, but are you also forced to provide FB credentials during initial setup? If not, then is the FB app just being installed a privacy threat if it is never used? Is it still accessing information on the phone without being tied directly to you?

Re: WhatsApp lead and other tech experts fire back at Apple’s Child Safety plan

#150
post #141

Earlier quoted context omitted.

Source? I am not aware of a law in the US that requires Apple to actively scan images, or to store them unencrypted (or keep copies of the keys).

Every cloud infrastructure holder is required for doing that. Closing an eye does not take a duty away. You must be actively pursuing that. Encryption would start flood of new laws https://www.govinfo.gov/app/details/USCODE-2011-title18/USCO...

Those laws do not exist (yet?). You can’t justify this as a compliance measure for legislation that does not exist.
Post reply on HN