logoalt Hacker News

Gigachadyesterday at 10:38 PM4 repliesview on HN

I think this is where we are headed. This feature seems useless on it's own since someone will eventually find a way to extract the key from the iphone and sign any image. But if they could make it so every iphone uses it's own key and the photos show "Taken by xyz" and it's linked to their icloud or identity somehow. That way images shared around will still be able to be linked to a source that you can choose to trust and the viewer can know it wasn't modified from what that person shot.

Then we might move to an age where photos which were not signed by someone will be treated as fake.


Replies

mikestorrenttoday at 12:13 AM

You may have forgotten that the world is driven by screenshots, and so a screenshot of a picture with the `(X) Verified by Apple to be Joe Schmoe` tacked on will be just as good as real verification for a lot of people.

What we need is almost something like the classic "press C+A+D to log in" or the idea of "above the browser pane"... something an image cannot show you unless it's legit. Perhaps a personal thumbprint icon that is different for each viewer, so you know its your device telling you that something is real and not just some mock fake thing?

intrasightyesterday at 11:06 PM

I don't think we'll treat them as fake but they would probably undergo more scrutiny - perhaps in a crowd-sourced manner that provides an overall score of probable legitimacy.

teaearlgraycoldtoday at 12:14 AM

Phones all have hardware security modules with keys stored inside. That will absolutely be in use for this new feature.

cavoiromtoday at 3:04 AM

You actually think the Secure Enclave is useless.