← Back to context

Comment by 14

3 days ago

My initial thoughts were so they could scan for csam while pretending as if users have a choice to not have their privacy violated.

From my understanding, CSAM scanning is always considered a separate, always on and mandatory subsystem in any cloud storage system.

  • Yes, any non E2EE cloud storage system has strict scanning for CSAM. And it's based on perceptual hashes, not AI (because AI systems can be tricked with normal-looking adversarial images pretty easily)

    • I built a similar photo ID system, not for this purpose or content, and the idea of platforms using perceptual hashes to potentially ruin people's lives is horrifying.

      Depending on the algorithm and parameters, you can easily get a scary amount of false positives, especially using algorithms that shrink images during hashing, which is a lot of them.

      20 replies →