Cryptographer Matthew Green flags risks in Apple's opaque photo provenance system

matthew_d_green · x · 2026-09-16

Security researcher Matthew Green criticizes Apple's newly deployed photo provenance/privacy features: Apple is vague about whether only Apple can trace photos to a hacked camera, not the public. He likes the privacy direction but argues opacity makes revocation fragile — if a fake image is signed, you need to know which camera to revoke, and unverifiable origins create their own risks.

Related event: Cryptographer Matthew Green questions robustness of Apple's signed 'trusted camera' photo provenance(7 posts)→

Original post →

More from Safety

Safety channel →