this post was submitted on 27 Oct 2023
83 points (86.7% liked)

Technology

58408 readers
3739 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] dual_sport_dork 25 points 11 months ago (1 children)

That only works if everyone plays by the rules. Literally everyone.

Here's the image, signed. Here's an unauthorized copy of the image or copy of a portion of the image, with the pixels extracted and saved as a .jpeg with none of the identifying signature or certificate data. Here's that same image posted to 4chan and reddit.

A certificate chain would only work if every image displaying piece of software in the world not only played by its rules, but were also incapable of displaying or modifying an unsigned image. I don't think I have to spell out for you what kind of nightmare that would be.

[–] [email protected] 2 points 11 months ago (1 children)

Basically, screenshots bypass any security built into the Metadata?

Double checking as I assume that is the case but don't know for certain.

[–] dual_sport_dork 6 points 11 months ago

Yes, if it's truly metadata that's not in the image itself. For instance, it could theoretically be digitally watermarked (this technology already exists, actually) in a manner that humans can't see or is tough to notice, but an algorithm looking for it can spot. That can be defeated, too, although depending on the robustness of the watermark technology it may take more effort.

The output loophole always exists: Any time you produce any output capable of being understood by a human (eyes, ears, both...) somebody can record and reproduce it. Probably not bit-for-bit, pixel-for-pixel, but you can always point a camera at the screen. (Or put your screen face down on a flatbed scanner that's had its lightbar defeated, or put a microphone in front of the speakers, or...)