Close Menu
Beverly Hills Examiner

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Shakira Lives “in Constant Fear” as an Immigrant in the US

    June 15, 2025

    Do you have buyer’s remorse about your new degree? It’s OK, these CEOs studied subjects that aren’t related to their industries

    June 15, 2025

    BREAKING: Fort Hood Reportedly on Lockdown Over Reports of Shooter — ‘If the Active Shooter is in Your Building or Nearby, Lock the Door’ (VIDEO) | The Gateway Pundit

    June 15, 2025
    Facebook X (Twitter) Instagram
    Beverly Hills Examiner
    • Home
    • US News
    • Politics
    • Business
    • Science
    • Technology
    • Lifestyle
    • Music
    • Television
    • Film
    • Books
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyrights Disclaimer
      • Terms and Conditions
      • Privacy Policy
    Beverly Hills Examiner
    Home»Technology»MIT researchers uncover ‘unpatchable’ flaw in Apple M1 chips – TechCrunch
    Technology

    MIT researchers uncover ‘unpatchable’ flaw in Apple M1 chips – TechCrunch

    By AdminJune 10, 2022
    Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    MIT researchers uncover ‘unpatchable’ flaw in Apple M1 chips – TechCrunch


    MIT researchers uncover ‘unpatchable’ flaw in Apple M1 chips – TechCrunch

    Apple’s M1 chips have an “unpatchable” hardware vulnerability that could allow attackers to break through its last line of security defenses, MIT researchers have discovered.

    The vulnerability lies in a hardware-level security mechanism utilized in Apple M1 chips called pointer authentication codes, or PAC. This feature makes it much harder for an attacker to inject malicious code into a device’s memory and provides a level of defense against buffer overflow exploits, a type of attack that forces memory to spill out to other locations on the chip.

    Researchers from MIT’s Computer Science and Artificial Intelligence Laboratory, however, have created a novel hardware attack, which combines memory corruption and speculative execution attacks to sidestep the security feature. The attack shows that pointer authentication can be defeated without leaving a trace, and as it utilizes a hardware mechanism, no software patch can fix it.

    The attack, appropriately called “Pacman,” works by “guessing” a pointer authentication code (PAC), a cryptographic signature that confirms that an app hasn’t been maliciously altered. This is done using speculative execution — a technique used by modern computer processors to speed up performance by speculatively guessing various lines of computation — to leak PAC verification results, while a hardware side-channel reveals whether or not the guess was correct.

    What’s more, since there are only so many possible values for the PAC, the researchers found that it’s possible to try them all to find the right one.

    In a proof of concept, the researchers demonstrated that the attack even works against the kernel — the software core of a device’s operating system — which has “massive implications for future security work on all ARM systems with pointer authentication enabled,” says Joseph Ravichandran, a Ph.D. student at MIT CSAIL and co-lead author of the research paper.

    “The idea behind pointer authentication is that if all else has failed, you still can rely on it to prevent attackers from gaining control of your system,” Ravichandran added. “We’ve shown that pointer authentication as a last line of defense isn’t as absolute as we once thought it was.”

    Apple has implemented pointer authentication on all of its custom ARM-based silicon so far including the M1, M1 Pro, and M1 Max, and a number of other chip manufacturers including Qualcomm and Samsung have either announced or are expected to ship new processors supporting the hardware-level security feature. MIT said it has not yet tested the attack on Apple’s unreleased M2 chip, which also supports pointer authentication.

    “If not mitigated, our attack will affect the majority of mobile devices, and likely even desktop devices in the coming years,” MIT said in the research paper.

    The researchers — which presented their findings to Apple — noted that the Pacman attack isn’t a “magic bypass” for all security on the M1 chip, and can only take an existing bug that pointer authentication protects against. When reached, Apple did not comment on the record.

    In May last year, a developer discovered an unfixable flaw in Apple’s M1 chip that creates a covert channel that two or more already-installed malicious apps could use to transmit information to each other. But the bug was ultimately deemed “harmless” as malware can’t use it to steal or interfere with data that’s on a Mac.



    Original Source Link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    Previous ArticlePlastic litter on Australian beaches cut by 29 per cent over six years
    Next Article 17 best family vacation ideas & destinations

    RELATED POSTS

    Suspect in Minnesota Shooting Linked to Security Company, Evangelical Ministry

    June 15, 2025

    Google reportedly plans to cut ties with Scale AI

    June 14, 2025

    Ahead of Protests, Waymo Scales Back Robotaxi Service Nationwide

    June 14, 2025

    TechCrunch Mobility: The cost of Waymo

    June 13, 2025

    The Meta AI App Lets You ‘Discover’ People’s Bizarrely Personal Chats

    June 13, 2025

    Tesla sues former Optimus engineer over alleged trade secret theft

    June 12, 2025
    latest posts

    Shakira Lives “in Constant Fear” as an Immigrant in the US

    Shakira says lives “in constant fear” as an immigrant in the United States. The comments…

    Do you have buyer’s remorse about your new degree? It’s OK, these CEOs studied subjects that aren’t related to their industries

    June 15, 2025

    BREAKING: Fort Hood Reportedly on Lockdown Over Reports of Shooter — ‘If the Active Shooter is in Your Building or Nearby, Lock the Door’ (VIDEO) | The Gateway Pundit

    June 15, 2025

    Protests outside Mexico-Dominican Republic Gold Cup match over immigration

    June 15, 2025

    Suspect in Minnesota Shooting Linked to Security Company, Evangelical Ministry

    June 15, 2025

    Could Iran Have Been Close to Making a Nuclear Weapon? Uranium Enrichment Explained

    June 15, 2025

    Protein review – nasty, funny, soulful

    June 15, 2025
    Categories
    • Books (578)
    • Business (5,482)
    • Film (5,419)
    • Lifestyle (3,524)
    • Music (5,473)
    • Politics (5,469)
    • Science (4,830)
    • Technology (5,416)
    • Television (5,093)
    • Uncategorized (1)
    • US News (5,470)
    popular posts

    Raised By Wolves: Every Power Mother Has Explained

    At first, HBO Max’s Raised By Wolves features a seemingly harmless android called Mother, but…

    Lana Condor & Jane Fonda Voice – The Hollywood Reporter

    June 30, 2023

    July 4th politics: Hassan charges her GOP challengers in battleground New Hampshire are ‘extreme opponents’

    July 4, 2022

    ‘Overwhelmed’ Meghan Markle fears palace ‘is only fighting for Prince Harry’ amid coronation preps: expert

    February 23, 2023
    Archives
    Browse By Category
    • Books (578)
    • Business (5,482)
    • Film (5,419)
    • Lifestyle (3,524)
    • Music (5,473)
    • Politics (5,469)
    • Science (4,830)
    • Technology (5,416)
    • Television (5,093)
    • Uncategorized (1)
    • US News (5,470)
    About Us

    We are a creativity led international team with a digital soul. Our work is a custom built by the storytellers and strategists with a flair for exploiting the latest advancements in media and technology.

    Most of all, we stand behind our ideas and believe in creativity as the most powerful force in business.

    What makes us Different

    We care. We collaborate. We do great work. And we do it with a smile, because we’re pretty damn excited to do what we do. If you would like details on what else we can do visit out Contact page.

    Our Picks

    Could Iran Have Been Close to Making a Nuclear Weapon? Uranium Enrichment Explained

    June 15, 2025

    Protein review – nasty, funny, soulful

    June 15, 2025

    Jane Seymour Talks Joe Lando Reunion and ‘Dr. Quinn, Medicine Woman’ Revival

    June 15, 2025
    © 2025 Beverly Hills Examiner. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT