‹ BackHN Continuity

Thread

Apple Reference Image: A New Approach for Verified Photography

539 points · 352 comments · imwally

  1. modeless · · focus · HN ↗
    This is so insanely complex and requires placing trust in the correctness of so many pieces, many of them closed-source. And uploading every verified "developed" image to Apple's servers. And giving up full control of the software and hardware you "own". All to achieve a goal of "verifying" photons, which is only a part of the real problem of verifying the truth of an event that was photographed.

    I hope that companies and governments don't start forcing us to use this stuff by requiring it for their services.

    1. Gigachad · · focus · HN ↗
      Because it’s impossible to implement this feature in open source and out in the open. It relies on a locked down image pipeline and hidden key.
      1. jeroenhd · · focus · HN ↗
        That's also why the approach is fundamentally flawed. The open-ish C2PA protocol has been "defeated" by tricking phones into signing arbitrary data already. The even-more-closed Apple version can be defeated the same way and relies on Apple to be the sole arbiter of truth.
        1. kingleopold · · focus · HN ↗
          any other similar approach is also dead on arrival, I can't believe so many apple engineers fails to see it? it's like siri 2012 all over again
      2. PunchyHamster · · focus · HN ↗
        Incorrect. There is nothing here requiring closed source. Only private keys need to be kept private for obvious reasons
      3. mcfedr · · focus · HN ↗
        its impossible in closed source. there is no reason to believe it does what it says it does. only private keys in the chain need to remain secret.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.