HACKER Q&A
📣 livinginfear

What do you intend to do about Apple's invasion of your privacy?


For those —like myself— who are upset about Apple's recent decision to share perceptual hashes of your phone's private content with a third party, what do you intend to do about it? Are people changing phones to opt-out, or installing custom ROMs?

It's been very heartwarming to see that a large part of the Hacker News community shares many of my concerns regarding what I feel is a very invasive overreach by Apple. For my own part, this has been the incentive to stop procrastinating and finally get myself a phone that can run a custom Android ROM. I know this doesn't solve all of the issues of privacy on mobile phones, however it is a move much more consistent with my ethics, given my own dislike of Google's business practices.


  👤 kevinventullo Accepted Answer ✓
Nothing. I think it is naive in the first place to think your data was ever safe on a closed platform. If the federal government or anyone else with influence over Apple is a serious part of your threat model, you probably shouldn’t be using a phone at all.

Did you ever read Three-Body Problem? I lead my digital life as if I am being watched and tracked all the time.


👤 Tango110
This sealed the deal for me. I always knew one day I would have to migrate away Apple. This is just where it starts. This software will be expanded and used by the US government and more totalitarian states world wide, it's just a matte of time. Wake up, the tool of your enslavement are being built. Tools of freedom like open source OSs and applications, E2EE, Bitcoin, and IPFS are the future. There is no room for compromises here. Either you create levers of totalitarianism or you don't. This is the first incarnation of one such lever and was probably inevitable.

My Apple Escape Plan

1. Backup and migrate all things caught within the Apple Ecosystem

2. Buy a Pixel 5

3. Load it with Graphene OS. https://grapheneos.org/

4. Over time replace cloud services with ones that use true and provable end-to-end encryption.

5. Delete Everything from Apple. Delete Account. Create New One pseudonymously for development use required with a duel booted Mac.

6. Migrate over time to decentralized cloud solutions on IPFS/File Coin


👤 SirensOfTitan
I plan on probably selling my iPhone in favor of something dumber: maybe a lightphone or something (though its over-priced). I don’t know what I’ll do with my AirPods Max, which I love more than anything these days.

If I really reflect, I don’t really see what good a smart phone has done for me: it’s abused my attention for little in return. Of functions that make my life better, maps, a timer and a competent compact camera are essentially it. I’ll use my laptop for any other function.

The CSAM scanning isn’t alarming to me, but the general on-device photo scanning is. It’s not a question of if a state will abuse this functionality for something else, but when. It’s continuing to erode private life, and as most defenses of speech go: I’m often defending scoundrels and awful people to defend speech.

Privacy rights are taken away slowly, usually for good reasons.


👤 jdlshore
Applaud.

When I look at the alternatives (e.g., Facebook), I see pictures being stored in the cloud unencrypted, where they can be scanned for a match with the CSAM hashes.

Apple, on the other hand, is developing a system to scan for CSAM matches client side, in a way that allows pictures to be stored encrypted, and paving the way for full end-to-end encryption.

Assuming that scanning for CSAM is going to happen, which I'm generally in favor of, Apple's approach is more privacy preserving, and reinforces my happiness with their privacy direction.


👤 sparker72678
At first I intend to do nothing, and stay on iOS 14.

Then, I intend to sit back and watch the show, and see how it shakes out. I don't really expect much to change from Apple, but if anything does it's going to take time for it to happen, and it'll take time for any alternatives to surface.


👤 hourislate
It's my belief that the FBI, CIA, NSA, CCP, FSB, Mossad, etc already had access to all my devices (IOS, Android, Windows). Anyone who thinks their calls, txt, computers, emails, physical mail, packages, etc are private are seriously mistaken. Everything from your Amazon orders, CC use, travel information, bank accounts, medical records, utility usage, etc is already available and fully accessible to anyone in the alphabet organizations. Apple announcing this is just them letting you know it was already happening at some level. You have zero privacy, they have been listening and watching everyone for a long time. Apples announcement basically let anyone who thought they had some level of privacy on IOS know that they don't and never did.

👤 yunesj
I intend to move out of their ecosystem. First, they limited my phone to comply with their community standards. Then, they blocked anti-censorship apps. And now, they are deploying on-device surveillance. No, thank you!

I don't have a plan yet. I felt a lot more affinity for Apple over Google, given their security models, business models, data models, rhetoric, and OSes.


👤 patch_cable
Nothing. It doesn't rank high in my list of things I am concerned about. It would be nice if there were other options to consider besides Android, as I don't really care it as an ecosystem.

👤 octokatt
I’m not looking to immediately move from the walled garden of Apple. I’m heavily bought in with an iPad, AirPods Max, MacBook… and I’m not looking to plunk down that much money.

However, I have a planned depreciation cycle for all of my devices. During the next cycles over the next 2-5 years, I’m going to assess moving entirely to open-source (Linux laptop, reMarkable tablet, Kobo…).

Right now, my main blockers to go full open source are a lack of time and patience. Given I’m planning to head from a start-up into a doctoral program, I’m guessing I’ll be able to have a little more space to experiment. As well, the market within a two-year span horizon should be good enough to improve the smart phone market.

TL;DR: This isn’t enough to get me to sell all of my Apple gear, but it is enough for me to restart assessing alternate devices and potentially replace devices as they naturally wear out.


👤 cwkoss
Continue using android. Was thinking about switching for my next phone, but I'll probably hold off and see how this plays out.

👤 slater
Nothing. Cos it's blown out of proportion.

👤 nunez
Honestly? Nothing. This might get downvotes, but that's okay. I am in support of what Apple's doing here, and Apple makes the best laptop, phone, tablet, and over-the-ear headphones out there right now. Everything else is a compromise; believe me, I've tried so many.

👤 nokya
I woukd say it doesn't matter and the mere fact that we are discussing this here indicates that we are in a bubble.

To put things in perspective, if Apple's customer size is a football terrain, we are likely the needle in a corner making noises and complaining about a feature nobody else cares about.

The vast majority of Apple customers are captive: as long as they can take beautiful pictures and share them on IM or social networks without the need to think about their relevance in social issues, they won't care.

If you want Apple to walk back on something, first you need to convince the larger audience that they may lose something. In the case of CSAM protection, good luck :)


👤 sdrinf
Called Apple today, gave them a 2-week heads-up on leaving the ecosystem. Current plan, if corporate lets this blow over without any action on their part, is a pixel 5 instead of the SE, and my laptop instead of the ipad. Sad day.

👤 krausejj
Vote for politicians that want to address monopolies in big tech, so someday we have real alternatives to Apple and Google that I can consider switching to.

👤 jet_32951
1) not buy any more apple hardware; 2) stick with AOSP until there is a pure-play FOSS phone solution I can live with; 3) run snow leopard server in a VM on a Linux box. SLS is IMO the apotheosis of what was good about Apple, and it still feels natural; 4) run separate Win 7 instances in other VMs to handle Win-only software I need.

👤 robertoandred
I intend to not get taken in by hyperbolic and paranoid handwringing.

Sharing hashes with third parties? Seriously?


👤 otterley
Nothing whatsoever. While Apple has crossed a certain line with respect to fingerprinting of images stored in iCloud, it's at least for a good cause. If they cross another, further line, I'll have to reconsider then.

👤 browningstreet
I posted my napkin plan here on HN already, and in the time since, I've hardened my position on this. I'll migrate off and re-double my efforts to bring light to the alternatives. When I told my GF about where I stood on this, she thought about it for a while and said, "Phones are too much in our lives...", so she's onboard too.

They crossed the line, and I'm out of the Apple ecosystem. I don't think the objections are overblown, and I think they're causing real harm, in addition to the slippery slope concerns: 1) abuse is inevitable, 2) feature creep is inevitable.

I'll add this Twitter thread: https://twitter.com/alexstamos/status/1424054544556646407


👤 moistly
I think I’ll finally buy a cellphone. One of the 12 minis that one of y’all sell because you’re abandoning Apple. I wish you the very best luck in pretending that you’re not being spied upon through other means.

👤 mensetmanusman
Here is a use of this tech for authoritarians:

-generate hash of a meme criticizing Winnie the Pooh

-submit to Apple

-receive user addresses of every inferior citizen that would better serve the state by working in the cotton-fields of flyover country


👤 twellington
I’m going to upgrade my camera by 10x by moving to Samsung galaxy s21 ultra

👤 lazzurs
Leaving iOS. Buying a Fairphone and crying about the lack of anything like Apple Watch.

👤 joshxyz
nothing lol i cant afford apple devices anyways

/cries in poverty

kidding aside though, i guess we're fucked eitherways be it apple or android.


👤 Leary
Just bought an iphone 12 a few years ago. Won't give that up. Probably will upgrade to a newer android brand next time, but not because of the privacy issues.

👤 yuppie_scum
Objection! Leading the witness.

👤 literallyaduck
I plan on using squid to block Apple browsers on my network.

👤 egypturnash
shrug

👤 frompdx
Personally, I found myself frustrated with Apple before this announcement. That was an odd experience because I normally find Apple devices to be frustration free. It only bothered me a little that iOS devices are so locked down, but not enough to actually do something about it. I liked everything else about the ecosystem. The thing that kept me hooked were first and foremost Apple's trackpads and display's. After that, an operating system that seemed to stay out of your way but still managed to protect you from doing anything really stupid. I even liked the keyboard on the MacBook.

Then, I bought a 2019 MacBook Air. One with the new keyboard design. It failed in six months and required three separate trips to the Apple store to get fixed. One day I couldn't get anything to load for about an hour. It turns out Apple's binary signing servers were down and that caused my self installed binaries to fail to load. I felt I had graduated from that sort of nannying by then.

Right around the time Big Sur became available my MBA refused to use my external display. It had worked perfectly for a year prior. Some searching revealed many users resolved their display issues after updating their OS. That seemed more like a coincidence but I had unplugged and plugged everything in at least twenty times by this point. I was ready to try anything. I upgraded to Big Sur and my monitor connected again. I always found it odd my system destabilized when that update became available. Probably a coincidence though.

iOS 14 killed the battery life on my iPhone 6s. It's an old phone, but I bought it new in 2019. I can get pretty reasonable battery life if I turn low power mode on, but it turns off automatically when the phone is "sufficiently charged", and I don't receive it to be much better than the battery life I got before iOS 14.

Recently, I have noticed my Magic Trackpad is much more "glitchy". The cursor jumps around the screen, for example. That was really the thing that always held me back from jumping ship. I really like the trackpad. A lot. At lead I did.

That's a long way to say already felt Apple was going backwards, not forwards. Still, Apple is pretty good. I'm afraid to pick something that I might find worse.

You have to give up a lot if you want to leave the major closed ecosystems (Apple, Window, and Android). In a way you are making yourself a digital second class citizen. You can even see the way the major close source ecosystems try to make you a second class citizen on their platform for choosing another platform. MS Office alternatives for a long time, and maybe still are, never quite fully comparable with the genuine article. If you are an Android user and all of your friends use Apple your friends get a crappy experience compared to the experience they have with others using iMessage. You're practically a burden to communicate with.

If you want to have privacy, I believe you must accept becoming a true second class citizen, or go to extreme lengths to maintain you privacy (and maybe still be a second class citizen anyway). I understand everyone is questioning what Apple is doing, but we should be questioning all of the privacy invasion we are forced to accept to be first class citizens in our society.

You must give up some privacy or accept a degree of second class personhood for the following (in the USA).

- Driver's License: Picture, address, physical description (including weight), and signature. It is very impractical to go with out a driver's license in most of the United States.

- Credit Score: This example is actually unreasonable because you can't actually opt out of having a credit score. You are also punished for not participating with a lower credit score.

- Bank Account: You need to provide personal info to open a bank account. It isn't easy to function without one, and you will pay more money to have access to the money you are paid via payroll check.

- Job: You need to provide a lot of information to have a job (legally) in the United States.

And today:

- Internet and all it includes: You must give up your privacy in almost every way. Where you travel, what food you eat, what you like to read, what you like to listen to, who you are friends with. Most of this was happily volunteered in the past, but to enjoy the benefits of things like Google Maps, Netflix, and Spotify, you need to give up your privacy. It is pretty impractical to replace these and things like them with something that is not more of the same.

To even get started:

- Linux PC/Laptop

- Linux smartphone

To be really be privacy conscious:

- CDs, DVDs/BlueRay, ideally purchased with cash, instead of Spotify, Netflix, or their many variants.

- Standalone GPS unit with pre-purchased maps instead of Apple/Google maps.

- No credit cards. Bank cards are also suboptimal from a privacy perspective.

To be really, really privacy conscious:

- No driver's license

- No car

- No phone

- No bank account

- No (legal) job

- No land

- Don't register to vote

- Only buy with cash

With Apple, and with everything else, we all have to decide how much of our privacy we are willing to give up in exchange for first class citizenship in our society. We all have to decide how much friction we are willing to accept in exchange for privacy. The deck is stacked against those who prefer privacy in many ways.

Personally, all things considered I am ready to move on form Apple and accept more friction. I might even go as far as giving up Spotify and Google Maps for the alternatives I've mentioned. I don't actually have a credit card so I'm already a second class citizen of the consumer finance world, but that might have to change in the future. I think that's about as far as I feel I can go.


👤 a-dub
i might buy an iphone. i read the materials they published and think it's a fine bit of engineering that balances end user privacy with abuse management for their hosted service. they don't share hashes with anyone, in fact they never leave your device, takes about 5m to grok that.

👤 rvz
Nothing will happen, despite all the outrage. Unfortunately, it will blow over when they announce the M1X Macbooks and iPhone 13.

Given the many users who keep having a @gmail.com address, their privacy is already invaded by Google. Even switching off location on a typical Android device doesn't mean off. [0] Some people have to drastically flash a custom ROM to escape, where as most just won't bother.

As for the Linux phone ecosystem; they are not even ready yet. So for everyone outraged at Apple right now will just keep on using their Macs and iPhones as normal.

[0] https://www.cnet.com/tech/services-and-software/google-alway...