Forgery of C2PA on a Pixel 10

52 points by lvig


motet-a

The mere idea of having to sign stuff to prove it’s not AI-generated sounds utterly terrible to me...

lake

I have a fear that this will somehow lead to an even bigger push for strict Play Integrity checks and other user-hostile, often superficial methods for device attestation, and ultimately punish systems like GrapheneOS (which does not allow root and goes further than stock at preventing exploits, but cannot pass strict Play Integrity because it is not an OEM-installed OS).

... but it might not!

JulianSildenLanglo

Other than having an image sensor chip that can sign the raw image before it even goes to the CPU, I can't think of a way that you could stop someone with root access from signing images.