Techlore Talks

Did Apple Just Fix iCloud's Security?

Dec 10, 2022
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

iCloud Backups Bypassed iMessage Encryption

  • Apple historically stored iMessage and many device contents in iCloud backups that were not end-to-end encrypted.
  • That allowed law enforcement to obtain message contents via iCloud backups despite iMessage's E2EE.
ADVICE

Turn On Advanced Data Protection

  • Enable Advanced Data Protection to end-to-end encrypt most iCloud data except mail, contacts, and calendars.
  • Set a recovery key or a trusted recovery contact when you enable it to avoid data loss.
INSIGHT

Metadata And Checksums Still Expose Info

  • Apple keeps some metadata under standard protection even with Advanced Data Protection enabled.
  • They use checksums and de-duplication techniques that can reveal whether another account has the same file.
Get the Snipd Podcast app to discover more snips from this episode
Get the app