Hacker News new | past | comments | ask | show | jobs | submit login

Why not combine this with a second different hash?

E: Better yet, only run the second hash if you have a collision, which should be very rare.




Apple does, and I created a proof of concept for how it might work to guard against adversarially perturbed images here: https://blog.roboflow.com/apples-csam-neuralhash-collision/


How do you know they aren't doing this on the backend after the initial on-device match?




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: