iCloud Backup Encryption

The cluster debates whether Apple's iCloud backups are truly end-to-end encrypted, highlighting how they undermine iMessage privacy by giving Apple access to user data and keys.

📉 Falling 0.5x Security
3,737
Comments
18
Years Active
5
Top Authors
#3698
Topic ID

Activity Over Time

2009
10
2010
4
2011
25
2012
22
2013
139
2014
178
2015
69
2016
184
2017
123
2018
248
2019
192
2020
428
2021
803
2022
387
2023
318
2024
264
2025
297
2026
54

Keywords

E2EE HSM US AFAIK appleinsider.com washingtonpost.com us.html KB apple.com CSAM icloud encrypted apple backups end end device imessage end end encrypted end encrypted end

Sample Comments

Tepix Mar 29, 2019 View on HN

Data backed up to iCloud is not yet encrypted in a way that Apple cannot access it.

privacyking Apr 8, 2021 View on HN

Well for example, it is well documented that although their messages in cloud feature is "end to end encrypted", as soon as you enable icloud phone backups, apple has access to all your messages. A similar issue likely arises with this.

MertsA Feb 20, 2016 View on HN

iCloud encrypts backups at rest but it's not encrypted with a key that only the user has, it's encrypted with Apple's key.

I thought that stuff was all encrypted, and Apple couldn't see it?

modeless Nov 22, 2022 View on HN

Your statement is nonsensical. Either Apple has the key, or it's end to end encrypted. Both cannot be true. And in fact Apple has the key, even if you turned off iCloud backups in most cases since the person you're talking to probably has it enabled. Which makes the marketing misleading at best, and downright fraudulent at worst.BTW both Apple and Google have a way of doing end to end encryption of backups with a recovery option in the case of device loss. Apple deliberately

snowwrestler Feb 21, 2024 View on HN

Just a bit lower on the same page:> When iCloud Backup is turned on, everything inside it is end-to-end encrypted, including the Messages in iCloud encryption key.Meaning that Apple does not actually have access to that key, because it is encrypted before being saved to their servers.

philistine Jun 7, 2022 View on HN

Yes Apple is willingly staying quiet about your iMessage backup being accessible by them. But it does not change the fact that iCloud Keychain is end-to-end encrypted with Apple incapable of accessing your keychain.

dmitryminkovsky Aug 20, 2021 View on HN

In my understanding, iCloud is not E2E encrypted. They hold the keys. They can scan content on ingress if they want.

sfvegandude Oct 17, 2022 View on HN

iCloud backups are encrypted, just not end to end. Which is as good as not encrypted.

iknowstuff Mar 8, 2018 View on HN

Actually, iCloud backups are not end to end encrypted, which is a massive hole in Apple's privacy stance.