Like stated below, I’m seriously worried about Adversarial examples that fool the network into
A) hiding bad pictures being not recognized
B) triggering false positives on harmless pictures to discredit people.
Opening up the network would mate it even easier to create the adversarials…
Im not sure there is a winning position in the approach they used
«even easier to create the adversarials», agree. But if they find one of this pictures they can retrain in a way that find all of them on all phones. So it will never be safe to have CP on the phone/iCloud.
And easier to keep Apple accountable on not matching anything else than the purpose.
Opening up the network would mate it even easier to create the adversarials… Im not sure there is a winning position in the approach they used