Apple introduced Reference Image, an opt-in provenance feature for the iPhone 18 Pro and iPhone 18 Pro Max that is intended to prove an image originated in an iPhone camera and was not subsequently altered. In Reference mode, the main sensor cryptographically signs pixel data immediately after capture, before software processing; the phone retains a secure digital negative locally and uses Private Cloud Compute to render an unprocessed version for private validation. Apple says it retains hashes rather than reference photographs, does not publicly identify photographers or correlate images from the same sensor, and can revoke compromised photos or sensors if fraud is detected.
The feature is designed to help recipients compare a reference image with an edited image and detect manipulation or AI-generated content, but its initial scope is limited to specified iPhone models, regions, and Apple-device viewing. Critics note that Apple has not published the sensor-attestation and cryptographic design for independent review, retains central authority to invalidate provenance data under defined security conditions, and does not use 3D depth information to prevent “photo of a photo” attacks. Apple argues its hardware-based approach offers stronger protection against data injection, OS compromise, hardware tampering, and cryptographic attacks than software-only alternatives.

See the reporting duties and controls this puts on the clock.
1 event from the most recent confirmed update back to the earliest known activity.
Apple introduced the opt-in Reference Image feature for iPhone 18 Pro and iPhone 18 Pro Max, designed to provide verifiable evidence that Main-camera photos were captured by the device and were not subsequently altered or AI-generated. The system signs sensor pixel data at capture, retains a secure digital negative, and can use Private Cloud Compute to render an image for validation; Apple also outlined initial device, regional, and viewing limitations.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.