• 0 Posts
  • 21 Comments
Joined 2 years ago
cake
Cake day: July 4th, 2023

help-circle

  • I’m not pretending to understand how homomorphic encryption works or how it fits into this system, but here’s something from the article.

    With some server optimization metadata and the help of Apple’s private nearest neighbor search (PNNS), the relevant Apple server shard receives a homomorphically-encrypted embedding from the device, and performs the aforementioned encrypted computations on that data to find a landmark match from a database and return the result to the client device without providing identifying information to Apple nor its OHTTP partner Cloudflare.

    There’s a more technical write up here. It appears the final match is happening on device, not on the server.

    The client decrypts the reply to its PNNS query, which may contain multiple candidate landmarks. A specialized, lightweight on-device reranking model then predicts the best candidate by using high-level multimodal feature descriptors, including visual similarity scores; locally stored geo-signals; popularity; and index coverage of landmarks (to debias candidate overweighting). When the model has identified the match, the photo’s local metadata is updated with the landmark label, and the user can easily find the photo when searching their device for the landmark’s name.


  • It’s not data harvesting if it works as claimed. The data is sent encrypted and not decrypted by the remote system performing the analysis.

    From the link:

    Put simply: You take a photo; your Mac or iThing locally outlines what it thinks is a landmark or place of interest in the snap; it homomorphically encrypts a representation of that portion of the image in a way that can be analyzed without being decrypted; it sends the encrypted data to a remote server to do that analysis, so that the landmark can be identified from a big database of places; and it receives the suggested location again in encrypted form that it alone can decipher.

    If it all works as claimed, and there are no side-channels or other leaks, Apple can’t see what’s in your photos, neither the image data nor the looked-up label.





  • That’s not the point I’m making. You should disable your cars modem if it has one, but you still should have no expectation of privacy. Thinking you can have anonymity with a license plate displayed to everyone is foolish. It’s like asking how to be anonymous while wearing a name tag and the same clothes every day.



  • deranger@sh.itjust.workstoPrivacy@lemmy.mlCar Privacy is Shit
    link
    fedilink
    arrow-up
    10
    arrow-down
    6
    ·
    edit-2
    7 months ago

    Let me try this comment again.

    There is no driving with privacy or anonymity unless you’re on private land.

    Anyone got tips for how to anonymize their car?

    Remove the license plate. You will rarely have privacy driving a car on a public road. You should disable the modem, of course, but you’re still not going to be driving anonymously or privately. Automated license plate readers means your travels are going into databases that very well could be breached at some point in time.

    Law enforcement use of ALPRs is rapidly expanding, with tens of thousands of readers in use throughout the United States; one survey indicates that in 2016 and 2017 alone, 173 law enforcement agencies collectively scanned 2.5 billion license plates.

    According to the latest available numbers from the Department of Justice’s Bureau of Justice Statistics, 93 percent of police departments in cities with populations of 1 million or more use their own ALPR systems, some of which can scan nearly 2,000 license plates per minute. In cities with populations of 100,000 or more, 75 percent of police departments use ALPR systems.

    Despite this expansive data collection effort, many departments have not developed a policy to govern the use of ALPR technology, or provided privacy protections.

    https://www.brennancenter.org/our-work/research-reports/automatic-license-plate-readers-legal-status-and-policy-recommendations


  • The point I was trying to make is driving a car is inherently not private due to license plates. Of course license plate readers can’t get information directly from the ECU, but thinking you’re going to be driving privately because you don’t have a modem in your car is naive, IMO. Car privacy is shit even if you disable the modem, which I wasn’t recommending against. Of course you should disable it. It’s still a very public activity you’re doing that’s likely being tracked by license plate readers.