alphauniverse.com/stories/sony...
alphauniverse.com/stories/sony...
- The IPTC "Origin Verify" has been spinning its wheel for almost a month now.
- The @truepic.bsky.social one resolves a 404 error.
- The @Microsoft "Content Integrity" has a SSL_ERROR_BAD_CERT_DOMAIN
#Abandonware
- The IPTC "Origin Verify" has been spinning its wheel for almost a month now.
- The @truepic.bsky.social one resolves a 404 error.
- The @Microsoft "Content Integrity" has a SSL_ERROR_BAD_CERT_DOMAIN
#Abandonware
Sadly @LinkedIn is not on the C2PA Conforming Products List, and it still happily strip the "Content Credentials" from the video stream.
Sadly @LinkedIn is not on the C2PA Conforming Products List, and it still happily strip the "Content Credentials" from the video stream.
As always, the "durable attribution" is one click away of deletion.
As always, the "durable attribution" is one click away of deletion.
Who could’ve guessed? The #C2PA "solution" pushed by the AI industry to calm regulators over AI risks is a scam.
www.theverge.com/report/80635...
Who could’ve guessed? The #C2PA "solution" pushed by the AI industry to calm regulators over AI risks is a scam.
www.theverge.com/report/80635...
The fact that the article itself is sponsored by an AI company only makes matters worse.
www.washingtonpost.com/technology/2...
The fact that the article itself is sponsored by an AI company only makes matters worse.
www.washingtonpost.com/technology/2...
None of the Tailly “Slop” Norwood images, regurgitated straight from the GPU pipelines of Black Forest Labs "Flux" and Runway ML (Google, Nvidia, Salesforce) have valid C2PA provenance labels.
None of the Tailly “Slop” Norwood images, regurgitated straight from the GPU pipelines of Black Forest Labs "Flux" and Runway ML (Google, Nvidia, Salesforce) have valid C2PA provenance labels.
🥳 to @adobe.com @contentauth.bsky.social @andyparsons.net for having the "Adobe Content Authenticity" #spyware passing the test.
🥳 to @adobe.com @contentauth.bsky.social @andyparsons.net for having the "Adobe Content Authenticity" #spyware passing the test.
And I was spot‑on about the watermark: it’s literally commented as “FFmpeg command with advanced watermark settings” 😂
And I was spot‑on about the watermark: it’s literally commented as “FFmpeg command with advanced watermark settings” 😂
From what I saw at IBC, it looked like nothing more than FFmpeg drawtext (v0.6, 2010) for watermarking, wrapped with Adobe’s c2patool and its WASM C2PA decoder.
There was no demo with the Sony Camera, probably not compatible.
From what I saw at IBC, it looked like nothing more than FFmpeg drawtext (v0.6, 2010) for watermarking, wrapped with Adobe’s c2patool and its WASM C2PA decoder.
There was no demo with the Sony Camera, probably not compatible.
- The watermark is removable with a single click.
- Desktop only, in a country where 80% of internet access happens on mobile.
- The watermark is removable with a single click.
- Desktop only, in a country where 80% of internet access happens on mobile.
The new specs solve all the problems! said the C2PA Product Lead at Google.
For 2 days later removing from a blog post a C2PA signed image doxing his home location.
https://www.heise.de/en/news/Photo-news-Lessons-learnt-from-the-C2PA-debacle-10672949.html?utm_source=flipboard&utm_medium=activitypub
Posted into heise online in English @heise-online-in-english-heiseonline
The new specs solve all the problems! said the C2PA Product Lead at Google.
For 2 days later removing from a blog post a C2PA signed image doxing his home location.
Yet it wasn’t difficult: record the video at the set time and sign it with the good old @adobe.com @contentauth.bsky.social #C2PA software.
Adaptive streams? Nowhere to be found.
Metadata? Dumped like a CRT-TV.
www.franceinfo.fr/une-informat...
Yet it wasn’t difficult: record the video at the set time and sign it with the good old @adobe.com @contentauth.bsky.social #C2PA software.
Adaptive streams? Nowhere to be found.
Metadata? Dumped like a CRT-TV.
www.franceinfo.fr/une-informat...
They’ve cracked text encoding like it’s 1999… by ASCII‑ing it 😅
"rights": "France Télévisions/ 'Tous droits réservés'"
"rights": "France Televisions tous droits reserves"
Wrapped up in a deprecated #C2PA version.
They’ve cracked text encoding like it’s 1999… by ASCII‑ing it 😅
"rights": "France Télévisions/ 'Tous droits réservés'"
"rights": "France Televisions tous droits reserves"
Wrapped up in a deprecated #C2PA version.
The #C2PA implementation is minimal: just a signature (no timestamp), "SONY CAMERA" listed as the generator, and a 160×120 thumbnail. That’s all.
However, there’s also a "private" SSIG box (Sony Signature) containing XDCAM XML metadata.
"Open standard"? unreadable specs → non‑compliant results.
"Open source code"? guarded by @adobe.com → bloated & painful to debug.
Result:
#IPTC , the global standards body of the news media, fails compliance, and their Verify tool (@adobe.com) blesses forgeries.
"Open standard"? unreadable specs → non‑compliant results.
"Open source code"? guarded by @adobe.com → bloated & painful to debug.
Result:
#IPTC , the global standards body of the news media, fails compliance, and their Verify tool (@adobe.com) blesses forgeries.
Only to discover that the hosting site had also signed it with #C2PA.
Now the photo is in the Internet Archive, showing for the eternity that #C2PA is a privacy nightmare
Only to discover that the hosting site had also signed it with #C2PA.
Now the photo is in the Internet Archive, showing for the eternity that #C2PA is a privacy nightmare
As experienced by the @contentauth.bsky.social Google's C2PA "obsessively privacy-preserving" Product Lead, who (perhaps unintentionally), revealed his home address via an image taken with a Google Pixel 10 camera.
"...platforms may also keep copies server-side for verification or legal holds. That creates a new data lake of provenance logs."
...as for C2PA's "Trust Model"...
As experienced by the @contentauth.bsky.social Google's C2PA "obsessively privacy-preserving" Product Lead, who (perhaps unintentionally), revealed his home address via an image taken with a Google Pixel 10 camera.
The image was taken using Leica and Nikon cameras, which may have been running a custom OpenAI firmware, according to @contentauth.bsky.social @adobe.com
contentauthenticity.adobe.com/inspect?sour...
The image was taken using Leica and Nikon cameras, which may have been running a custom OpenAI firmware, according to @contentauth.bsky.social @adobe.com
contentauthenticity.adobe.com/inspect?sour...
🤣
Services/companies affected: US Department of Defense,
@truepic.bsky.social, most @iptc.org, all OpenAI,
@microsoft.com "Election" integrity....
🤣
Services/companies affected: US Department of Defense,
@truepic.bsky.social, most @iptc.org, all OpenAI,
@microsoft.com "Election" integrity....