Earlier quoted context omitted.
Are you in North America? Which feature phone would you suggest? The Nokia 3310 was likely the only phone I was considering, but it’s ancient and 3G and doesn’t seem very future proof.
The Nokia 3310 does not support 3G. It’s a 2G (GSM or TDMA) device.
An open letter against Apple's new privacy-invasive client-side content scanning
391–400 of 451 posts
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#392This letter doesn't really read correctly. If you're going to write an open letter, this might be better worded. >Apple's proposed technology works by continuously monitoring photos saved or shared on the user's iPhone, iPad, or Mac. It does a check if it's being uploaded to iCloud Photos. It is not (currently, at least) continuously monitoring photos saved or shared; shared is Messages specific for child accounts. >…
Yes, there seems to be a lot of conflation between the two separate systems (in the media, and in comments on here). As you say, it’s important to be precise, otherwise people won’t take your arguments seriously. To summarise: One system involves hash checking. This is performed when photos are being uploaded to iCloud. The hashes are calculated on-device. Private set intersection is used to determine whether the pho…
This isn't a protection of your privacy. It's because US v. Ackerman (2016) the appeals court ruled that when AOL forwarded an email with an attachment whos hash matched the NCMEC database to law enforcement without anyone looking at it, and law enforcement looked at the email without obtaining a warrant was an unlawful search and had AOL looked at it first (which they can do by virtue of your agreement with them) and gone "yep, thats child porn" and reported it, it wouldn't have been an unlawful search.
Instead, if Apple were to report the existence of a match to law enforcement without divulging the image, which (if the matching is precise enough) should be enough to create probable cause to allow law enforcement to obtain a warrant. The only once a warrant was issued would anyone look at the image. That would be more protective.
What they're actually doing just inserts an unaccoutable additional step that reduced your privacy for the specific purpose of undermining your due process by avoiding the need of law enforcement to evade your privacy.
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#393Earlier quoted context omitted.
iphone user != icloud user When you use a cloud service, you must (should) be aware of the consequence of your files being stored on another computer on the internet. Until now, your local files on your device were not scanned in an inscrutable manner. This is a precedent.
But it’s still only cloud photos being scanned. The only photos on your device being scanned are ones that are being uploaded to the cloud. So again, what’s the practical difference?
There are some valid slippery slope arguments to be made. But, the feature as described and implemented today actually increases privacy for CSAM scanning.
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#394Earlier quoted context omitted.
I apologise if you you genuinely felt my questions were assuming bad faith. It was not my intention. > "does the CP protection end justify any means?" It's a style of argumentation. Not personal. When trying to find where to draw a line in the sand, one way is to draw a line that almost certainly encompasses us both. We are obliged to consider: if not this line (obviously) then what line? My intent was to find your l…
How are you expecting me to describe this limit? I think it's legitimate for companies to implement automated systems, such as CSAM and spam filtering, to limit the amount of unwanted material on their networks. I don't have any problem with Apple, Google, and Microsoft, checking the hashes of files I upload (or attempt to upload, in Apple's case) to their servers against ICSE. I would have an issue if employees of t…
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#395Honestly I'm glad to see a non-insignificant amount of people in tech take this seriously, especially when the goal Apple announces appears to be for the greater good. It can be hard to stand on the side that doesn't immediately appear to be correct. We have already lost so many freedoms for 'national security' and other such blanket terminology. Just be warned, there will be those that unfairly try to cast this as h…
> a non-insignificant amount of people in tech take this seriously We're all here to make ourselves feel good saying we Took A Stand. In reality, four weeks from now, do you think anybody will still be talking about it? I made this same mistake. I was pretty convinced that people were taking Copilot seriously, and that there was possibly going to be ramifications for Microsoft. I wasn't particularly looking forward t…
Instead of spreading your nihilism, you could be a force for good. We are not powerless. We can make a difference.
Contact your elected officials. Start a movement. Create a direct competitor to Apple. I know it’s tough, but we all just need to come together and stop the negativity.
Excuses or results. You choose.
Sent from my iPhone
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#396Earlier quoted context omitted.
Would you? How often do you come into contact with the OS when developing for a phone, let alone use a phone? Phones are products for people who use them. What sells phones is not what OS is underneath layers and layers of code, but user experience. If we are to even hope for alternatives, this is where the focus needs to be. If the OS underneath mattered the Nokia Communicator would have been a runaway success. It w…
>How often do you come into contact with the OS when developing for a phone, let alone use a phone That's exactly the point, Maybe you don't know what Plan9 is, but see it like that: The Phone is just a Terminal. If i want todo business i connect my terminal to my Workplace-servers, every application, datas and settings are there, the calculation heavy stuff and backup is made on the server. If finished i connect to…
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#397Earlier quoted context omitted.
>I'm not sure what to do about it For starters, please give up the defeatist attitude. They deserve the frontlash; even if it serves no purpose, as you describe it. Apple have placed 'Privacy' at the core of their messaging, in order to sell their high-end products. In comparison to the already excessive pearl clutching based on moral panic within the ecosystem e.g. sanitising and censoring language and apps. This is…
They’ll scan content if you have it set to goto iCloud so as to avoid being an accomplice. Turn off sync to iCloud, make local backups only. Who is to say politicians who started threatening tech companies publicly haven’t made threats behind closed doors about Apple maybe being on the hook as an accomplice for distribution? My company only exists because our CEO had input on an executive order years ago. We hardly “…
The below links encapsulate some parts of why Apple cannot be continually trusted with customer data, or viewed as a paragon for privacy/security. There have been numerous examples, past and present e.g. The Fappening, T2 Chip flaws, atrocious leaks of customer data, Pegasus etc.
Some people with technical prowess, although not deluded, buy these devices with limited desire to constantly tweak or circumvent security features, especially when these devices claim to have them baked in and promise not to intrude.
>So much for this site having a higher level of discourse and it’s efforts to dissuade repetitive and knee jerk commentary though.
I am invested in this ecosystem, so the topic has a certain resonance. I resent your implication that my response to the original author was knee-jerk commentary. Furthermore, I responded to their nonchalance with a view to furnish a counterpoint.
https://en.wikipedia.org/wiki/ICloud_leaks_of_celebrity_phot...
https://www.wired.com/story/apple-t2-chip-unfixable-flaw-jai...
https://www.seattletimes.com/business/technology/apple-pays-...
https://www.theguardian.com/technology/2021/jul/21/why-apple...
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#398Earlier quoted context omitted.
Slightly problematic when your phone loses service, but I get where you are coming from. It would be nice for that to be viable, we’re probably decades away from having good enough network connectivity.
Truetrue, it need's some caching and cpu capability, like the map when your offline...stuff like that..but with 5G...well we will see ;)
If they could just figure out how to deliver on it ;-)
Re: An open letter against Apple's new privacy-invasive client-side content scanning
#399Re: An open letter against Apple's new privacy-invasive client-side content scanning
#400Earlier quoted context omitted.
Yes, there seems to be a lot of conflation between the two separate systems (in the media, and in comments on here). As you say, it’s important to be precise, otherwise people won’t take your arguments seriously. To summarise: One system involves hash checking. This is performed when photos are being uploaded to iCloud. The hashes are calculated on-device. Private set intersection is used to determine whether the pho…
Based on my reading, the first system is interesting in that the threshold is also cryptographically determined. Each possible hit forms part of a key, and until a complete key is made none of the images can be reviewed. Should also be noted the second system sends no images to Apple or is reviewed by Apple employees in any way. It's just using the same on device ML that finds dog pics for example. I think Apple PR s…
This sums up my entire feelings on the matter at this point.
It's become a bit of hysteria due to this.