alt.hn

4/10/2026 at 1:09:06 AM

Microsoft PhotoDNA scanning problem

https://www.elevenforum.com/t/microsoft-photodna-scanning-problem-it-is-comical-now.45961/

by darkzek

4/10/2026 at 2:02:54 AM

> Microsoft wanted me to confirm my age, that I was a "real person" along with identity. So Microsoft somehow reached out to the police department, based on my address information in my Microsoft accounts, with a check of some kind. I had to go to the local police department to verify who I was and my age. The police department told me it was odd. They are just following up on Microsoft complaint. This happened a few or so years ago. Microsoft confirmed my identity then. However, the Microsoft account profile photo issue still exists today.

You what now???

by giancarlostoro

4/10/2026 at 2:06:28 AM

> The police department told me it was odd. They are just following up on Microsoft complaint.

Since when does your local police department respond to a "Microsoft complaint?"

by MisterTea

4/10/2026 at 2:57:42 AM

they dont. and microsoft doesnt contact local police. this post is dubious.

if its CSAM related (which is implied via photodna involvement), microsoft does not contact local police. they contact NCMEC (or the appropriate equivalent), who then coordinates the law enforcement response.

if it isnt CSAM, microsoft does not contact local police to aid with support, because that would be ridiculous to coordinate over a billion accounts across tens of thousands of police departments around the world. and police forces would obviously not tolerate acting as microsoft support personnel.

there has to be a substantial amount of missing context, or this story is (partially? fully?) fabricated, or the user is mistaken/wasnt talking to microsoft.

by john_strinlai

4/10/2026 at 2:06:47 AM

That's what I'm saying! That is WILD.

by giancarlostoro

4/10/2026 at 2:10:01 AM

PD - Hello Police department MS - Hello officer, this is Microsoft. We're calling to report a user trying to access their system unlawfully...

by MisterTea

4/10/2026 at 2:06:53 AM

That sounds like straight up scammer behavior. "Yes, this is Microsoft calling. We need to confirm your info with the local authorities."

by the_snooze

4/10/2026 at 2:44:07 AM

> That sounds like straight up scammer behavior. "

Microsoft reached out to the police department, then the person went to the local police department to verify who they were. I don't see how this could be a scam.

by selcuka

4/10/2026 at 7:18:20 AM

I think there are a few scammer red flags in this - it stood out to me that they said "support watched me setup 3 different accounts" - not saying MS support couldn't do this, but remoting into the machine and watching a victim enter form details is a very scammer-y thing for sure

by dwroberts

4/10/2026 at 2:11:47 AM

Home Depot™ Presents the Police!®

by beeflet

4/10/2026 at 2:15:30 AM

Subway™ Eat Fresh and Freeze, Scumbag!®

by Forgeties79

4/10/2026 at 1:51:57 AM

> Microsoft's PhotoDNA scanning is not just in OneDrive, through the Microsoft's eco-system. Basically, if you are using your Microsoft account to sign in to Windows 11, PhotoDNA scans your entire computer. This information came directly from Microsoft Support.

This sounds like a horrible privacy violation. Is it true? What do they do if they find a match?

by mzajc

4/10/2026 at 5:15:54 AM

The general consensus from I saw from discussions years ago was that scanning of your local files was not something that happened (which would be detectable and eventually discovered and called out by someone). Doing so would also require the dll which contains how photodna works, which Microsoft does/did not want out in the wild and requires an NDA to use. Secretly exfiltrating your files for scanning would get Microsoft in legal trouble.

Incidentally, how it works is clever and interesting imo, though defeatable if you know how it works: https://www.hackerfactor.com/blog/index.php?%2Farchives%2F93...

The obvious alternative of course, is openly and aggressively getting users to agree to uploading their files to Microsoft’s computers (OneDrive), which are scanned.

However in the age of machine learning, copilot and the like, I would not be surprised if local scans start becoming a thing, since offering classification of objects in photos is a perfectly reasonable thing to offer from Microsoft’s point of view, and of course CSAM detection can come along with that.

by Modified3019

4/10/2026 at 5:42:12 AM

I’m surprised that such scanning isn’t built into windows defender, the enabled-by-default tool already designed to scan all your files.

But yeah, they also just super aggressively try to trick you into sending all your files to onedrive.

by snailmailman

4/10/2026 at 2:02:32 AM

According to the post, they called the police (!)

by bawolff

4/10/2026 at 2:26:11 AM

the police part makes me really question what is going on here and the validity of this report.

if you get multiple child sexual abuse material (CSAM) matches, the police will be knocking on (down) your door. microsoft isnt going to nicely ask you to go down the the police station. they dont even contact local police, they forward the information to the appropriate national entity (e.g. NCMEC) who coordinates the law enforcement response.

and if it isnt CSAM related, microsoft is not going to be contacting your local police, period.

something isnt adding up here. i suspect this post is ragebait.

by john_strinlai

4/10/2026 at 5:58:46 AM

> and if it isnt CSAM related, microsoft is not going to be contacting your local police, period.

Why would they not? I once had a problem with material uploaded on a file sharing system hosted on Hetzner. I received an email about it from Hetzner, but I was on holiday and I didn't check my email so after 48 hours or so the local police (French gendarmerie) came to my address and politely asked for my server logs.

Luckily I had forgotten to update my billing address on my Hetzner account, so it was my parents address and I was on holidays at my parents.

by seszett

4/10/2026 at 2:00:47 AM

Wait, reading between the lines it thinks his face is CSAM?

I guess its a hash collision, but that is pretty crazy. Sounds like the plot to a scifi dystopia.

by bawolff

4/10/2026 at 2:03:38 AM

The perceptual hashes used for this kind of thing are, necessarily, much more susceptible to collisions than cryptographic hashes - so it's not out of the question at all.

by Retr0id

4/10/2026 at 2:17:36 AM

That's my guess as well. Could be a collision, or it might be he's in a corpus. Or he's been RATed and is not talking to Microsoft at all. I wasn't aware they required face pics to provide service.

by vessenes

4/10/2026 at 2:03:52 AM

No, TFA says the picture was associated to an old account that got flagged - presumably anything linked to that account, picture included, is now cursed.

by loloquwowndueo

4/10/2026 at 2:16:44 AM

TFA also says the police were involved. It seems unlikely MS would call the police just for a flagged account, or that if they did, the police would care.

by bawolff

4/10/2026 at 2:15:18 AM

> dystopia

Coming soon to every AI enabled product near you

by isodev

4/10/2026 at 2:02:38 AM

This is why I regularly reset my face.

by Retr0id

4/10/2026 at 2:43:29 AM

Philip K Dick enters the chat...

Through A Scanner Darkly, indeed.

by wormius

4/10/2026 at 2:48:46 AM

If that doesn't work, they'll fingerprint your thoughts.

Oh well, Philip K Dick enters the chat again. With Solar Lottery this time.

by selcuka

4/10/2026 at 6:12:45 AM

Blocking the account because the image was used by another account that had been suspended etc. sounds more like the specific image had been flagged as offensive while in use by that account, rather than it having anything to do with them establishing a relationship between the actual accounts

(If they established connections between accounts by using images, surely they would block vast swathes of people using generic harmless images you can find online)

by dwroberts

4/10/2026 at 1:57:24 AM

Is it a specific picture of the face or any picture of it?

by batch12

4/10/2026 at 3:42:22 AM

Does this mean a Windows PC associated with a Microsoft account will scan images accessible on mapped file shares?

by BobbyTables2

4/10/2026 at 2:01:05 AM

> I just do not know what to about it any longer. Each time I create a new Microsoft account

There’s your problem. Don’t create a Microsoft account? Why would you need one anyway? To use windows? Why? Get Linux or switch to Mac.

by loloquwowndueo

4/10/2026 at 2:03:09 AM

"My picture gets a call to the police if I use it at my day job" is a hell of a sentence, for example.

by rincebrain

4/10/2026 at 1:57:29 AM

Ooph, what midlevel SWE at MS did he rub the wrong way..?

by seemaze

4/10/2026 at 1:42:51 AM

So... microsoft thinks he is too hot for them.

by donkeylazy456

4/10/2026 at 2:04:31 AM

For your information, PhotoDNA is a CSAM related tool. I do not think that comment is appropriate.

by Uberzi

4/10/2026 at 1:46:38 AM

Why does he keep using that picture?

by ltbarcly3

4/10/2026 at 2:20:24 AM

The whole point of PhotoDNA (CSAM scanner) is that it can detect variations of photos without them being identical and without having CSAM to directly compare it to.

by bombcar

4/10/2026 at 1:58:03 AM

It's his face

by xeromal

4/10/2026 at 2:18:45 AM

"Why should I change? He's the one who sucks!"

by shrinks99

4/10/2026 at 3:54:01 AM

That no talent ass-clown.

by SV_BubbleTime

4/10/2026 at 2:00:48 AM

Wrong question. Why does he continue to do business with a company who clearly doesn't want him?

by 9991

4/10/2026 at 2:10:23 AM

>I had at least 12 Microsoft accounts immediately closed

What?

by jrflowers

4/10/2026 at 2:20:43 AM

What what?

I take it you're not one of the many people who've had a dozen different services over the years get bought up by Microsoft, then forcefully migrated to multiple Microsoft Accounts, and then lose access to all of them?

by inetknght

4/10/2026 at 5:42:55 AM

Maybe try it with a different image the 12th time?

by cocodill

4/10/2026 at 7:41:12 AM

How did they find out that all 12 accounts were suspended instantly? Were they signed into 12 Microsoft accounts on the same device?

by jrflowers