upvote
The UK is currently demanding that Apple install mandatory OS level client side real time scanning malware on every device, bypassing all security and encryption to monitor everything. Its an insanely evil and completely unacceptable demand.

Apple should withdraw from the UK until the UK government learns to respect encryption and privacy.

reply
Well in the article they explicitly said they can’t turn off ADP by design, so no luck. But I’m all for making the politicians suffer the consequences of their own decisions.
reply
How are they allowed to even offer e2ee Keychain/iCloud Passwords for example? Isnt that subject to lawful access too?
reply
Exactly my question as well.

Especially since big tech is steaming ahead to mandating passkeys that only they are allowed to control/backup. Not long until all governments could intercept your passwords to all services.

reply
That is exactly the question. I took a look and we presented some of our findings at DEF CON 34. There are paths to decrypting e2ee secrets without the passcode, some of these paths are considered vulnerabilities and have received patches (CVE-2026-28864).
reply