3 ms·
In my understanding, iCloud is not E2E encrypted. They hold the keys. They can scan content on ingress if they want.
by dmitryminkovsky 5y ago
In my understanding, iCloud is not E2E encrypted. They hold the keys. They can scan content on ingress if they want.
- 3pt14159 5y agoBut they don't want to. They want to keep the content encrypted on their infrastructure to reduce the risk of leaking it. They only decrypt it with a court order.
- dmitryminkovsky 5y agoThat makes sense but isn't introducing this capability to the device even worse? With this capability in place, the only thing preventing them from abusing it is policy.
- 3pt14159 5y agoIn my suggested world, you are free not to install it. If you distrust them enough to think that they'll change their policy to be more invasive, don't install it. Personally, I'd rather have the detection happen on my phone than in the data centre. And I don't mind opting in to have my photos analyzed before upload. But the thing I don't like about Apple's CSAM thing is that it comes with my phone. And you know someone somewhere is going to accidentally enable iCloud and then claim they never did. Or maybe they didn't? Bugs do happen after all.
- dmitryminkovsky 5y agoMakes sense, thanks for clarifying.