TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Apple Silicon vulnerability leaks encryption keys, and can't be patched easily

48 pointsby hotdailysabout 1 year ago

5 comments

consumer451about 1 year ago
This is a summary of the Ars reporting [0] on the original research [1].<p>[0] <a href="https:&#x2F;&#x2F;arstechnica.com&#x2F;security&#x2F;2024&#x2F;03&#x2F;hackers-can-extract-secret-encryption-keys-from-apples-mac-chips&#x2F;" rel="nofollow">https:&#x2F;&#x2F;arstechnica.com&#x2F;security&#x2F;2024&#x2F;03&#x2F;hackers-can-extract...</a><p>[1] <a href="https:&#x2F;&#x2F;gofetch.fail&#x2F;" rel="nofollow">https:&#x2F;&#x2F;gofetch.fail&#x2F;</a>
pvgabout 1 year ago
Recent thread: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=39779195">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=39779195</a>
heresie-dabordabout 1 year ago
Apple experts, how subtle is this constraint for this exploit?<p>&gt; The GoFetch attack uses the same user privileges as many other third-party macOS apps, rather than root access. This lowers the barrier to entry for actually run the attack, but it&#x27;s not entirely the whole story.<p>&gt; The GoFetch app running the attack must also be used on the same chip cluster as the cryptographic target app in order to function, and both must use the efficiency cores or the performance cores at the same time.<p>= = = edit for additional context<p>&gt; The threat resides in the chips’ data memory-dependent prefetcher, a hardware optimization that predicts the memory addresses of data that running code is likely to access in the near future. [...] DMPs are a relatively new phenomenon found only in M-series chips and Intel&#x27;s 13th-generation Raptor Lake microarchitecture
评论 #39802466 未加载
评论 #39800610 未加载
politicianabout 1 year ago
Will this result in a new tool to unlock confiscated iPhones?
评论 #39801684 未加载
评论 #39800328 未加载
ChrisArchitectabout 1 year ago
[dupe]