Earlier quoted context omitted.
Apple doesn’t scan iCloud for CSAM and refuses to do it. Which is why they researched intensively on differential privacy.
But they could, as iCloud Photos is not e2e (Apple can read all of it) and they turn over the user data on over 30,000 users per year to the USG without even a warrant. This is just farce.
Client side scanning is a prerequsite to making it e2e if you also want countermeasures against CSAM.