/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Apple is reportedly considering using on-device hashing algorithms to match photos with known child abuse material, a potentially problematic practice

Apple is reportedly set to announce new photo identification features that will use hashing algorithms to match the content of photos … Source: @matthew_d_green .

9to5Mac Benjamin Mayo

Context & Ripple Effects

Apple had already used hashes of known child-abuse images in email enforcement, as a search warrant described, making the reported photo-matching plan an expansion of an existing detection approach rather than a wholly new safety capability.

Related coverage shows the report was quickly followed by Apple's stated plan to scan photos on iOS 15 and macOS Monterey, while security experts warned that device-scanning scope could broaden under government pressure. The issue is therefore where the matching occurs and what governance limits constrain it.

First-order effects

  • Apple’s proposed photo-identification feature would place matching for known child-abuse material on users’ iOS and macOS devices, extending the company’s use of hashes beyond the email workflow described in prior coverage.
  • Apple must defend the privacy and abuse-resistance of the system as security experts challenge the implications of scanning users’ devices.

Second-order effects

  • The accompanying on-device Messages warnings for sexually explicit photos broadens Apple’s child-safety push from identifying known illicit material to moderating family communications, increasing scrutiny of device-level safety features.
  • Governments and child-safety stakeholders gain a concrete enforcement mechanism to evaluate, while Apple’s privacy commitments face pressure to define whether the matching database and use cases can expand.

Third-order effects

  • If device-side matching becomes an accepted safety-control model, public-safety AI governance will increasingly hinge on who controls reference databases, review thresholds, and the process for adding new detection targets.
  • The dispute sets a durable precedent: consumer-device privacy will be judged not only by encryption and cloud access, but by the policy constraints on computation performed locally.

The trend: Child-safety enforcement is moving into consumer devices, making governance of on-device detection systems a central privacy boundary.

Discussion

  • @matthew_d_green Matthew Green on x
    I've had independent confirmation from multiple people that Apple is releasing a client-side tool for CSAM scanning tomorrow. This is a really bad idea.
  • @matthew_d_green Matthew Green on x
    A small update from last night. I described Apple's matching procedure as a perceptual hash function. Actually it's a “neural matching function”. I don't know if that means it will also find *new* content on your device or just known content. https://twitter.com/...
  • @matthew_d_green Matthew Green on x
    So I wrote this previous thread in a hurry and didn't take time to spell out what it means, and what the background is. So let me try again. https://twitter.com/...
  • @matthew_d_green Matthew Green on x
    This means that, depending on how they work, it might be possible for someone to make problematic images that “match” entirely harmless images. Like political images shared by persecuted groups. These harmless images would be reported to the provider.
  • @matthew_d_green Matthew Green on x
    A number of people pointed out that these scanning technologies are effectively (somewhat limited) mass surveillance tools. Not dissimilar to the tools that repressive regimes have deployed — just turned to different purposes.
  • @matthew_d_green Matthew Green on x
    The ability to add scanning systems like this to E2E messaging systems has been a major “ask” by law enforcement the world over. Here's an open letter signed by former AG William Barr and other western governments. https://www.justice.gov/...
  • @matthew_d_green Matthew Green on x
    Regardless of what Apple's long term plans are, they've sent a very clear signal. In their (very influential) opinion, it is safe to build systems that scan users' phones for prohibited content. That's the message they're sending to governments, competing services, China, you.
  • @tsimonite Tom Simonite on x
    Will they deploy this for iPhones in China? What if the govt asks (or passes a law) to know who has politically sensitive photos on their phone? https://twitter.com/...
  • @levelsio @levelsio on x
    If you have auto-save of received images on Whatsapp etc. enabled (the default setting), this means anyone can send you illegal content, and the police may pick you up shortly after https://twitter.com/...
  • @matthew_d_green Matthew Green on x
    These are bad things. I don't particularly want to be on the side of child porn and I'm not a terrorist. But the problem is that encryption is a powerful tool that provides privacy, and you can't really have strong privacy while also surveilling every image anyone sends.
  • @oliviasolon Olivia Solon on x
    Hashes aren't perfect by any means, but AFAIK law enforcement can't charge someone on the basis of a matched hash - they have to find CSAM on a suspect's device. The hash match provides probable cause. https://twitter.com/...
  • @matthew_d_green Matthew Green on x
    Initially I understand this will be used to perform client side scanning for cloud-stored photos. Eventually it could be a key ingredient in adding surveillance to encrypted messaging systems.
  • @matthew_d_green Matthew Green on x
    Initially Apple is not going to deploy this system on your encrypted images. They're going to use it on your phone's photo library, and only if you have iCloud Backup turned on. So in that sense, “phew”: it will only scan data that Apple's servers already have. No problem right?
  • @seanmcelroy @seanmcelroy on x
    Porn is always the lead excuse to deploy privacy-crippling technologies. CSAM today, classified material next, and eventually, whatever any power deems “objectionable” tomorrow. This playbook is so tired. Not fooled, @Apple https://twitter.com/...
  • @nicksdjohnson Nick.Eth on x
    Once again, this ultimately comes back to a simple question: Do our devices work for us, or for the manufacturers? Do we have a right to expect that they're designed to work in our best interests, not someone else's? https://twitter.com/...
  • @diakayyali @diakayyali on x
    This is bad. For all the reasons in the thread, AND This tool won't be contained to child sexual abuse material. Tools developed to fight it are often inappropriately redeployed to try to detect “terrorist content”- regardless of false positives. https://mnemonic.org/... (1/2) ht…
  • @matthew_d_green Matthew Green on x
    There are a lot of problems with this idea. Yes — client side scanning (and encrypted images on server) is better than plaintext images and server-side scanning. But to some extent, the functionality is the same. And subject to abuse...
  • @matthew_d_green Matthew Green on x
    The theory is that you will trust Apple to only include really bad images. Say, images curated by the National Center for Missing and Exploited Children (NCMEC). You'd better trust them, because trust is all you have.
  • @matthew_d_green Matthew Green on x
    (There are some other fancier approaches that split the database so your phone doesn't even see it — the databases are actually trade secrets in some cases. This doesn't change the functionality but makes the system even harder to check up on. Apple may use something like this.)
  • @matthew_d_green Matthew Green on x
    The way this will work is that your phone will download a database of “fingerprints” for all of the bad images (child porn, terrorist recruitment videos etc.) It will check each image on your phone for matches. The fingerprints are ‘imprecise’ so they can catch close matches.
  • @kaepora Nadim Kobeissi on x
    Dumbed-down explanation: Apple's iPhones will soon start secretly calling the police if they find photos on your phone that match fingerprints of photos depicting child abuse and any content eventually deemed objectionable. This can/will be generalized to secure messaging https:/…
  • @matthew_d_green Matthew Green on x
    For the past decade, providers like Apple, WhatsApp/Facebook, Snapchat, and others have been adding end-to-end encryption to their text messaging and video services. This has been a huge boon for privacy. But governments have been opposed to it.
  • @matthew_d_green Matthew Green on x
    But ask yourself: why would Apple spend so much time and effort designing a system that is *specifically* designed to scan images that exist (in plaintext) only on your phone — if they didn't eventually plan to use it for data that you don't share in plaintext with Apple?