【I Am a Plaything】
A new security vulnerability has been discovered in Apple's Mac and I Am a PlaythingMacBook computers – and the worst part is that it's unpatchable.
Academic researchers discoveredthe vulnerability, first reported by Ars Technica, which allows hackers to gain access to secret encryption keys on Apple computers with Apple's new Silicon M-Series chipset. This includes the M1, M2, and M3 Apple MacBook and Mac computer models.
SEE ALSO: Bing vulnerability made it possible to alter search resultsBasically, this vulnerability can be found in any new Apple computer released from late 2020 to today.
You May Also Like
What is the vulnerability?
The issue lies with prefetchers— components meant to predictively retrieve data before a request to increase processing speed — and the opening they leave for malicious attacks from bad actors.
The researchers have dubbed the attack "GoFetch," which they describe as "a microarchitectural side-channel attack that can extract secret keys from constant-time cryptographic implementations via data memory-dependent prefetchers (DMPs)."
A side-channel attack is a type of cyber attack that uses extra information that's left vulnerable due to the design of a computer protocol or algorithm.
The researchers explained the issue in an email to Ars Technica:
Related Stories
- Airbnb banned indoor security cameras. Here's why.
- Hackers cause EA to postpone Apex Legends pro gamer tournament
- iCloud wasn't hacked for ransom, but you should make sure to keep your account safe, anyway
Prefetchers usually look at addresses of accessed data (ignoring values of accessed data) and try to guess future addresses that might be useful. The DMP is different in this sense as in addition to addresses it also uses the data values in order to make predictions (predict addresses to go to and prefetch). In particular, if a data value "looks like" a pointer, it will be treated as an "address" (where in fact it's actually not!) and the data from this "address" will be brought to the cache. The arrival of this address into the cache is visible, leaking over cache side channels.
Our attack exploits this fact. We cannot leak encryption keys directly, but what we can do is manipulate intermediate data inside the encryption algorithm to look like a pointer via a chosen input attack. The DMP then sees that the data value "looks like" an address, and brings the data from this "address" into the cache, which leaks the "address." We don’t care about the data value being prefetched, but the fact that the intermediate data looked like an address is visible via a cache channel and is sufficient to reveal the secret key over time.
Basically, the researchers discovered that the DMPs in Apple's Silicon chipsets – M1, M2 and, M3 – can give hackers access to sensitive information, like secret encryption keys. The DMPs can be weaponized to get around security found in cryptography apps, and they can do so quickly too. For example, the researchers were able to extract an 2048-bit RSA key in under one hour.
Usually, when a security flaw is discovered nowadays, a company can patch the issue with a software fix. However, the researchers say this one is unpatchable because the issue lies with the "microarchitectural" design of the chip. Furthermore, security measures taken to help mitigate the issue would require a serious degradation of the M-series chips' performance.
Researchers saythat they first brought their findings to Apple's attention on December 5, 2023. They waited 107 days before disclosing their research to the public.
Topics Apple Cybersecurity MacBook
Search
Categories
Latest Posts
NYT mini crossword answers for May 9, 2025
2025-06-26 05:24The iPhone 8 might have a resizable virtual home button
2025-06-26 04:45Blizzard's 'Overwatch' League gets its first European team
2025-06-26 04:38A Typical Wall Street Republican
2025-06-26 03:32Popular Posts
The Baffler’s May Day Round Up
2025-06-26 05:44FaceApp removes racist 'ethnicity change' face filters from its app
2025-06-26 04:51Android O's name might be announced on the day of the solar eclipse
2025-06-26 04:41Someone call Chance the Rapper—SoundCloud is saved!
2025-06-26 03:59Featured Posts
The Best Gaming Concept Art of 2016
2025-06-26 05:36This guy missed his high school so much he recreated it on Minecraft
2025-06-26 05:07Amazon's big rival in India just got $2.5 billion
2025-06-26 04:28A note to stars considering big
2025-06-26 04:26How to Easily Make iPhone Ringtones Using Only iTunes
2025-06-26 03:33Popular Articles
Let's talk about the iPhone 8 'notch'
2025-06-26 05:44This guy missed his high school so much he recreated it on Minecraft
2025-06-26 05:30Amazon's big rival in India just got $2.5 billion
2025-06-26 04:51Waitin’ on the Student Debt Jubilee
2025-06-26 03:54Newsletter
Subscribe to our newsletter for the latest updates.
Comments (479)
Unobstructed Information Network
Dyson V8 Plus cordless vacuum: $120 off at Amazon
2025-06-26 05:29Discovery Information Network
'Wonder Woman' Blu
2025-06-26 04:54Highlight Information Network
John Green's Turtles All the Way Down book cover revealed
2025-06-26 04:52Neon Information Network
Orphan Black series finale: Tatiana Maslany says goodbye to Clone Club
2025-06-26 04:17Mark Information Network
The Anatomy of Liberal Melancholy
2025-06-26 03:45