You can probably build a rig to feed false data to the sensor, or take a photo of a sufficiently high-resolution display, or use side-channel power analysis to extract the cryptographic keys. I have serious doubts this kind of provenance metadata will actually work against a sophisticated attacker (someone willing to spend more than 100k on making fake images), but I'm sure it will be used as an excuse to further loc…
Leica camera has built-in defense against misleading AI, costs $9,125
21–30 of 39 posts
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#22Re: Leica camera has built-in defense against misleading AI, costs $9,125
#23https://it.slashdot.org/story/10/12/03/2133218/canons-image-...
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#24There is one hitch. What if AI-generated content is projected through camera lens? That is pretty simple to do.
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#25One issue is because there are so few CR cameras out there, most people would sign their photos in Lightroom. So the provenance starts from software rather than capture device. So you can sign a fake photo that you modified and its provenance from that point on is traceable. But you still wouldn’t know if the photo was captured authentically. I guess it doesn’t matter — this is about traceability rather than authenti…
The point is to prove that the image was taken in the real world, to stakeholders that might not necessarily take your word for it otherwise.
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#26Huh, there has to be a better way to do this than with a proprietary SaaS service.
Of course, allowing consumers to push their custom certs to the chip, without "rooting", instead of having central control.
You can already sign a JPEG with your GPG key; that won’t convince anyone that it wasn’t actually photoshopped or outright generated by AI.
The point here is to have a more trusted hardware vendor vouch for their camera not being easy to trick into signing arbitrary data, but only actual images it took itself.
Of course that also puts a lot of pressure on the key generation, storage and processing mechanism of that vendor; trusted computing in this scenario (i.e. the adversary has unrestricted and persistent access to the system) isn’t easy to get right.
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#27"Whenever someone subsequently edits that photo, the changes are recorded to an updated manifest, rebundled with the image, and updated in the Content Credentials database whenever it is reshared on social media. Users who find these images online can click on the CR icon in the [pictures'] corner to pull up all of this historical manifest information as well, providing a clear chain of providence, presumably, all th…
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#28You can probably build a rig to feed false data to the sensor, or take a photo of a sufficiently high-resolution display, or use side-channel power analysis to extract the cryptographic keys. I have serious doubts this kind of provenance metadata will actually work against a sophisticated attacker (someone willing to spend more than 100k on making fake images), but I'm sure it will be used as an excuse to further loc…
The signature just says who took the picture, not that the image is not ai generated.
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#29There is one hitch. What if AI-generated content is projected through camera lens? That is pretty simple to do.
Without any visible artifacts? I would imagine that to be quite difficult actually!
But here is an alternative:
You pass an image through a lens, you take photo from the camera. Now, having the input original AI-generated image and photo with the artifacts you calculate what changes your camera introduces. You reverse it to know what needs to be modified in original image to get photo exactly as you want. If one pass does not suffice, you do multiple passes.
Yes, it is easy, as in a CS or math student can do it.
Re: Leica camera has built-in defense against misleading AI, costs $9,125
#30Worth noting that the expensive price isn't because of the metadata feature - it's a new version of the Leica M11 which is $8995 itself (Leicas are just crazy expensive)
However, I think the digital signing is a good way to provide the photographer with proof that the picture in the paper/competition is the picture that they made with the camera and not their pal Midjourney.
Why they put it in such a sluggish contraption, I don’t know, but probably a good place to start compared to a Z9 and trying to tag pictures at 500 frames a second or whatever.