Apple Reference Image: A New Approach for Verified Photography
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
Apple Reference Image: A New Approach for Verified Photography
Unofficial Hacker News client; not affiliated with Y Combinator.
tgsovlerkhgsel · · focus · HN ↗
There are already plenty of insurances that require you to submit claims through a smartphone app that tries to essentially do this by capturing sensor metadata etc. - those don't need to be nation-state resilient, just Joe the Crackhead Insurance Scammer resilient, so this works. Likewise, more and more things online require identity verification (either officially or disguised as age verification).
Edit: And while "a nation state actor can spoof this" is a problem for the journalism use case, the insurance/ID verification use cases are perfectly fine with anything that raises the bar but could be bypassed with enough effort. Also, the journalism use case suffers from the same fundamental issue all of these use cases suffer from: People will "verify" the picture by looking at the repost of a screenshot of the verification UI, not by verifying the original themselves.
alwillis · · focus · HN ↗
You have it all wrong.
Apple Reference Image is not an id system; it's primarily a way to attest that the pixels recorded by the camera sensor have not been altered in any way; the pixels, metadata and timestamp are all cryptographically signed.
There's no way to link a reference image to a person; it's also not possible to determine if a pair of images came from the same device.
> And while "a nation state actor can spoof this" is a problem for the journalism use case
This is incorrect:
So… a nation-state can't really do anything here unless they acquire alien technology. If something crazy happens (solar flare or EMP?), a fraudulent reference image can be revoked.> Also, the journalism use case suffers from the same fundamental issue all of these use cases suffer from: People will "verify" the picture by looking at the repost of a screenshot of the verification UI, not by verifying the original themselves.
I would imagine there will be a way to confirm an Apple Reference Image on the web. Pretty soon, 3rd parties will be able to verify the image themselves:
cvoss · · focus · HN ↗
> Apple Reference Image is not an id system
GP does not have it all wrong. A company desiring you to prove your identity often asks for a photograph of your government ID. Now that this is easily faked, it is reasonable to expect that the company will ask for a verifiably authentic photograph of your government ID.
That the Apple Reference Image itself is not traceable to the device/user is beside the point in this use case.
slester · · focus · HN ↗
JumpCrisscross · · focus · HN ↗
Interfacing with images is easy. Interfacing with NFC takes work. I have experienced precisely zero identity-verification workflows which NFC'd anything, and that includes my banks, which could easily ask for my debit card's NFC but don't.
inquirerGeneral · · focus · HN ↗
[dead]
lxgr · · focus · HN ↗
fweimer · · focus · HN ↗
I think processing that information is mandatory now, but probably was optional/largely unimplemented in 2012. But maybe I'm off by five years or so?
lxgr · · focus · HN ↗
The CA public key I just got off my country’s website, they were kind enough to just publish it :)
crote · · focus · HN ↗
If anything, verifying NFC is easier than images. Asking the chip in my identity card to provide a cryptographically-signed "This document belongs to Jane Doe" request is a handful of lines of code. Doing the same with images? Good luck coming up with an approach which isn't fooled by a photocopy!
JumpCrisscross · · focus · HN ↗
microtonal · · focus · HN ↗
Our national app for logging into government sites and confirming things also requires a step where the ID’s NFC is read to reach the highest trust level.
So it’s definitely becoming more and more common here.
tmp10423288442 · · focus · HN ↗
happyopossum · · focus · HN ↗
lxgr · · focus · HN ↗
The phone is just a relay to a remote server here, as newer ICAO machine readable travel documents intentionally don't support signatures/non-repudiation anymore, so you have to run the entire exchange against a component you trust (i.e. your server, not so much your app on a rooted/manipulated phone).
rickdeckard · · focus · HN ↗
If someone took a picture of a fake ID in the past, this method will bring no benefit, it will just add Apple as a paid service-provider.
It also doesn't change the trust-relationship between the two parties: If I need to prove my identity by uploading a government ID, _I_ am doing the photo attestation that this is the ID matching the data I provided, with or without an Apple Reference image.
alwillis · · focus · HN ↗
The image will be authentic, but an authentic image of a fake id isn't useful to them.
Also--only two iPhone models support this technology. It'll be years before the DMV or whoever could count on enough adoption before they could support it.
vablings · · focus · HN ↗