Happy Saturday everyone. If you’re an iPhone owner, today would be a great day to turn on Advanced Data Protection: this will end-to-end encrypt your iCloud backups so that only you (and people you choose) can see your photos and data. https://support.apple.com/en-us/HT212520
How to turn on Advanced Data Protection for iCloud

Advanced Data Protection for iCloud offers our highest level of cloud data security and protects the majority of your iCloud data using end-to-end encryption.

Apple Support
Before you activate ADP you should probably know that the FBI finds this encryption “deeply concerning.” So if that makes you uncomfortable, this might not be for you.
@matthew_d_green if the FBI thinks it’s “deeply concerning”, I’d say this is a good thing 🤣

@matthew_d_green
Deeply concerning how? As in, the FBI want's back doors in everything, because they're dumb?

Or deeply concerning, as in there are issues with the encryption algorithm?

And I'm confused here in part, because there is an encryption algorithm called ADP (Advanced Digital Privacy) that I assume is not Apple's ADP here, but don't know for sure, and that algorithm DOES have issues that people including the government have warned about.

@vmstan @matthew_d_green Before you enable it, make sure all of your devices support it. The only reason I haven’t activated it is because I have a couple of “antiques” in my collection.
@matthew_d_green as in, it's bad encryption?
@f00fc7c8 @matthew_d_green As in, I suspect, this is going to cut off their access to people’s data.
@matthew_d_green They make me uncomfortable and I find them "deeply concerning"
@matthew_d_green that makes it sound exciting!
@matthew_d_green once people steal your iPhone and change your password, then all your data is compromised; recent reporting indicates this as a rising problem that #Apple has yet to address.

@RassBariaw And they should. For now you can prevent this by going to Screen Time in settings, setting a password, and then disabling Password Changes and Account Changes as shown below.

Even if you don’t do that: someone having to physically steal your passcode is better than social engineering and remote attacks.

@matthew_d_green cc @InfoSecSherpa this ☝️ might help.... Also, for both iPhone and Android, the best solution currently appears to be to use a USB-C security key (physical) , similar to the one you would use on a computer.
Since using this method beginning 2018(?) no Google employee (80,000+) has been hacked or compromised.

I am not a technician. Please consult with someone knowledgeable and competent.

@RassBariaw @matthew_d_green So, does this comment mean we should or shouldn’t do this? Just seeking clarification, Rass Bariaw, thanks.
@matthew_d_green unfortunately I still use an old iMac that doesn’t support ADP so until I retire that machine, I can never use ADP.
@alexhung @matthew_d_green For me it is a Watch Series 2 that is not supported.
@matthew_d_green While this is a good idea, I can't turn that on without removing all my older devices. And it seems that transfer to Windows by using icloud.com also stops working.
@matthew_d_green apparently I can’t enable this because my Apple Watch doesn’t support the latest version of watchOS.
@tellyworth Ah the perils of having an unsupported watch.
@matthew_d_green Apple was still selling the series 3 six months ago!
@matthew_d_green Will I still be able to do full text search on files stored in iCloud after turning on Advanced Data Protection?

@matthew_d_green agree, however note that because this is opt-in, most will not enable it, and everyone you iMessage with will be escrowing their device's iMessage sync keys ("Messages in iCloud") to Apple in their nightly non-e2ee device backups.

it's a good step, but it's not enough.