Dear humans, 1) You willingly delegated the decision of what code is allowed to run on your devices to the manufacturer (2009). Smart voices warned you of today's present even then. 2) You willingly got yourself irrevocably vendor-locked by participating in their closed social networks, so that it's almost impossible to leave (2006). 3) You willingly switched over essentially all human communication to said social ne…
Is this anything new, though? The communications haven't been E2E protected ever since people started using phones.
Apple enabling client-side CSAM scanning on iPhone tomorrow
471–480 of 757 posts
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#472Earlier quoted context omitted.
You can only hire someone to verify your lock if the lock is verifiable in the first place. Apple is trying to make it non-verifiable.
Anything concrete on that? For a fact we know that ios has strong sandboxing, secure bootchain and apps are revokably verified.
Not sure about that. No source code. Also, Pegasus.
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#473Earlier quoted context omitted.
We also saw the police query "check-in" databases which were pitched to the public as "for contact-tracing purposes only". Scope creep is inevitable.
Source? Most of these systems didn't disclose location.
https://fortune.com/2021/02/01/singapore-covid-data-tracetog...
https://www.straitstimes.com/singapore/politics/police-can-a...
https://www.straitstimes.com/singapore/proposed-restrictions...
https://www.straitstimes.com/singapore/politics/bill-limitin...
(Note that one mostly-united political party controls 89.2% of Singapore's legislature seats, and can pass any laws or amend its constitution to their liking.)
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#474I'm really conflicted about this. For context, I deeply hate the abuse of children and I've worked on a contract before that landed 12 human traffickers in custody that were smuggling sex slaves across boarders. I didn't need to know details about the victims in question, but it's understood that they're often teenagers or children. So my initial reaction when reading this Twitter thread was "let's get these bastards…
Since you worked on an actual contract catching these sorts of people you are perhaps in a unique position to answer the question: will this sort of blanket surveillance technique in general but also in iOS specifically - actually work to help catch them?
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#475Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#476Earlier quoted context omitted.
Not GP but... >99% of the population will delegate the decision of what code is allowed to run to someone, be it the manufacturer, the government, some guy on the Internet or whatever. For that 99% of the population, by the way, it's actually more beneficial to have restrictions on what software can be installed to avoid malware I do not agree with this. You are saying people are too stupid to make decisions and that…
> I do not agree with this. You are saying people are too stupid to make decisions and that is amoral in my opinion. I'm not saying that at all. I'm saying that it's impossible for all people to make informed decisions on all the issues that surround them, because of both knowledge and time. And it doesn't just happen with computer and privacy, see food, for example. Do you make all decisions about what's allowed or…
The suggestion is not that people need to continually invest large amounts of time to manually verify their freedom is being upheld. It is that they should inform themselves once in order to understand the issue and be able to ensure their governments are not secretly becoming totalitarian states.
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#477Earlier quoted context omitted.
Nearly all the HW items have equivalent or superiour replacements, and a fair amount are dependent on the Apple ecosystem. Without Apple's ecosystem it's a good system but overpriced, and that's before you run into Linux compatibility problems. For example, take the monitor - there are monitors with higher refresh rates or more resolution (Retina does 'only' 6K). Also, Mac OS colour processing has no good equivalent…
Don't higher density displays take more power? Can we actually start making laptop displays that cap out at 1080 or 1440p?
Retina Display when it first arrived was literally THE reason I started switching to Apple ecosystem as it was exponentially better to look at that screen, and I'd even pay more for a 4K display on a MacBook if they brought it.
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#478Earlier quoted context omitted.
> Controlled by another third party. Everything is controlled by a third party except self-hosting. Mastodon allows that too. Closed networks don't. > Yes, you can switch to ProtonMail or something more secure if you want So you answered your own question. > but that won't solve the problems of the 99% of people that will use general providers and won't even know they can't switch. My point is that they are able to s…
> My point is that they are able to switch due to the openness of the platform. And my point is that most won't, and the ones that do will still go to another platform that's controlled by another third party and they'll still need to rust that the platform is not doing things they don't like. > Millions will immediately switch given a possibility. Switch to where? To another company that could do weird things out of…
I disagree. Here's why:
> For open source and federation to be useful in that regard, you need most people to actively research and check that the tools that they use are private and secure.
This is the key point. You do not need most people. You need some people. And you can always find some people who verify everything and self-host for you. This is how Signal and Matrix appeared and became (relatively) famous.
Re: Apple enabling client-side CSAM scanning on iPhone tomorrow
#479Earlier quoted context omitted.
> You can verify any small part and rely on the community to verify the rest. Or pay someone to verify. The only difference in this is who you trust. Be it Apple, the community or someone you pay, you're still trusting that someone else's interests align with yours and they did things correctly. In other words, this is not a technical problem. It's a problem that needs to be solved through regulation, because 99% of…
> The only difference in this is who you trust. Not really. There is a huge difference between trusting a single for-profit entity (who provides backdoor to iCloud in China) or huge number of independent people (each would like to get famous/rich for finding bugs).