Hacker News new | ask | show | jobs
by an_account_name 1774 days ago
If they can do a manual review at all, then there isn’t end to end encryption anymore, so I’m missing what the point of client side scanning is.
2 comments

End to end encryption of messages is by comparison easy as the devices can handle all of that internally. However, losing your iPhone is one of the main reasons to have an iCloud backup. Require a user to come up with a private key and any user who lost it also loses all their data.

Most people don’t really want end to end on consumer backup services, because of the associated risks. If however you don’t want unsecured backups you can handle this manually.

Of course nobody wants the company to actually look at your data, but that’s a separate issue.

The main selling point of Apple is how well integrated the ecosystem is, they could make it super simple to backup the private key on your different devices like watch, tablet and laptop.
Apple doesn't currently have end-to-end encryption for iCloud Photos either: https://support.apple.com/en-us/HT202303
Not today. I think moving CSAM from the server where it's done today to device is in preparation for announcing e2e for iCloud photos.
Apple has gotten a ton of heat over this and they haven't once mentioned that e2e on iCloud is something they're working on or that this technology would make possible, so can people stop spreading this narrative that this is their goal? It's completely baseless.
That the insanity of all of this hand waving. Literally every public photo service does this today.