Of course, you could argue some people that choose to not use iCloud would not get that last bit, but considering they're turning it on by default (and even turning it on whenever you switch devices even though you restore a backup with it off), I'd say that would be a tiny minority of their customers.
Also, since we're on the subject of "unannounced scanning of all photos", Apple went and did it anyway, same as Google turning it on by default but claiming it's only to look for "landmarks" LOL :) https://news.ycombinator.com/item?id=42533685
It was not. The device was incapable of determining matches and the process only applied to photos being uploaded to iCloud.
> Also, since we're on the subject of "unannounced scanning of all photos", Apple went and did it anyway, same as Google turning it on by default but claiming it's only to look for "landmarks" LOL :) https://news.ycombinator.com/item?id=42533685
They did not. The landmark process works in an entirely different way for an entirely different purpose.
No, that’s not right either. You should really read their white paper, it’s very interesting and not at all what people assumed it was like.
You had to provide multiple confirmed matches to the cloud before the human verifier could decrypt any of the images sent. They weren't scp:ing images to a share for all employees to see ffs.
> "it was the issue of it reporting content outside of your control at all, which again, this Google thing doesnt seem to do."
All the big cloud providers [Google, Microsoft, Facebook] report abusive imagery sent to their clouds to the authorities (search for annual NECMEC reports), except Apple. The others slurp up unencrypted data (Facebook photos, Google Drive, Microsoft OneDrive) and scan it and report on it, and nobody [on HN] says anything. Apple was trying to do a more privacy-preserving approach and it seemed like they might be pushing it to the client upload code so they could offer fully encrypted storage where they couldn't scan photos on their side, and a couple of years later they did, they announced optional Advanced Data Protection[2] which fully encrypts iCloud photos among other things.
Dark patterns aside, it's in your control whether to upload data to companies, so 'reporting content outside your control' is deliberately misrepresenting it.
[1] https://www.wired.com/story/apple-photo-scanning-csam-commun...
[2] https://support.apple.com/en-gb/guide/security/sec973254c5f/...
That’s what I find most frustrating about the reaction to this. This was a sophisticated, privacy-preserving process that represented a genuine step forward in the state of the art and there was an interesting argument to be had about whether it struck the right balance. But it was impossible to have that argument because it was drowned out by an overwhelming amount of nonsense from people guessing incorrectly about how it worked and then getting angry about their fantasies.
You’re criticising them for something they did not do, did not intend to do, and designed a system that worked in an entirely different way… just because they could do it differently to what they actually proposed doing.
If they wanted to do it that other way, they could have just done it that other way in the first place and saved themselves a lot of effort.
No, this is not true. There is nothing stopping open-source software from pushing malicious updates.
But you are avoiding my main point. You are criticising Apple for something they haven’t done and had no plans to do.
Two things stop it: (much simplified) oversight by the community and a possibility to fix the code.
> You are criticising Apple for something they haven’t done and had no plans to do.
The do participate in the enshittification (https://pluralistic.net/2025/02/26/ursula-franklin/ and https://news.ycombinator.com/item?id=43243075), so my only expectation is that they won't do what's best for the users. In addition, they removed many features requested by the users like the headphone jack.
In general, the less you trust in a company, the better. Free software allows to decrease the trust in the vendor by watching the code and forking whenever you have to.