That’s not how their encryption worked. The only way for apple to know a csam photo matched was if you had 5 photos that had a csam fingerprint from their database uploaded to iCloud. This matching only happened server side for photos uploaded to the cloud.
This seems far better than having every photo scanned server side and have those photos sit there unencrypted.
This seems far better than having every photo scanned server side and have those photos sit there unencrypted.