Skip to main content

Apple not ‘concened’ about the latest security attack on the M1 chip

 Apple not ‘concened’ about the latest security attack on the M1 chip






Apple’s M series of chipsets have been gaining praise ever since their inception. In 2020, the Cupertino giant began transitioning to in-house chips for its Mac products and introduced the M1 chip to kick off the transition. The M1 - found inside the MacBook AirMacBook Pro and Mac mini - was highly praised for its efficiency. However, researchers have found a new vulnerability that attacks M1’s “last line of security.” But Apple is not ‘worried’ about it.
A team of security researchers from MIT’s Computer Science and Artificial Intelligence Laboratory (MIT CSAIL) managed to defeat M1’s security measures, breaching the chip’s last line of security, the PAC (pointer authentication codes). The researchers developed a novel attack combining memory corruption and speculative execution, bypassing M1’s security. They found that the chip’s last line of security, often known as PAC (pointer authentication codes), can be breached through a hardware attack allowing attackers to gain access to the Mac.
How does the PACMAN affect the M1 chip?
Pointer Authentication is a security feature that helps protect the CPU when an attacker gains access to memory. So, there are pointers which save memory addresses, while the pointer authentication code (PAC) checks for any unexpected pointer changes caused by the attack, and stops the attacker from getting the system access.
However, the team of researchers found a way to break the authentication feature thus gaining access to the system using the PACMAN attack. The vulnerability finds the correct value to authenticate the pointer authentication, allowing the hacker to continue with the attack.
The researchers at MIT say that the attack involves a hardware device so a software patch would not be able to fix this issue. Also, an attacker does not need physical access to the system to execute PACMAN. Also, the PACMAN vulnerability is not just limited to the M1 chip as other ARM chips from Apple also use the PAC including both M-series and A-series chips.
Apple acknowledged the PACMAN vulnerability and released a statement reading, “We want to thank the researchers for their collaboration as this proof of concept advances our understanding of these techniques. Based on our analysis as well as the details shared with us by the researchers, we have concluded this issue does not pose an immediate risk to our users and is insufficient to bypass operating system security protections on its own.”
MIT CSAIL team will be revealing more details about the PACMAN vulnerability on June 18 at the International Symposium on Computer Architecture.

Popular posts from this blog

GTA IV PC game highly compressed parts free download with cheats pdf

  GTA 4 Highly Compressed   – Download GTA 4 in Highly Compressed Version for Free. Download GTA 4   Highly compressed for pc ! Many people ask me the above question daily Because GTA 4 is a top-rated game in its time and present time. So I decided to write a blog post on how to Download  GTA 4 Highly Compressed  version in 2022. Hey, Friends, My Name is Thomas, and today in this post, I will tell you an accurate and 100% working method to  download GTA 4 on your PC . GTA 4 is an action and open-world game for pc. This game was developed by rockstar games (Rockstar games inc is an American video game maker company) in 2008. So, let’s see how we can download and install GTA 4 on our PC for free. We already covered  GTA Vice City  and  GTA San Andreas  Game Highly Compressed versions in our previous post, so you can check out them if you want. GTA 4 Highly Compressed Now I will tell you how you can download  GTA 4 Highly compressed...

Microsoft scouts investing in Indian gaming Platform Zupee

  Microsoft did coversation to invest in Indian popolar Gaming Platform Zupee(Play to earn) recently and  put forward to reasonably lead a funding round near about $100 Millions , two people familiar with the matter revealed the latest in a series of bets from the cloud services giant to expand its business in the key overseas market. The two firms has not done an agreement and there is a  few reasonable chance the deal will not happen , the people said. A team within Microsoft has expressed apprehension abou t optics around betting and advised the global tech giant to steer away from the deal, a person briefed on the details said. Zupee declined to comment. Microsoft did not   reply to a request for comment late last month. Like many other startups  Including Oyo   in which Microsoft has invested in India, the Zupee deal sought to have the startup use Azure and other Microsoft cloud services as part of the deal, two people familiar with the matter rev...

फैक्ट चेक: 'इस होम्योपैथिक दवा की दो बूंद से बढ़ा जाता है शरीर में ऑक्सीजन का स्तर', जानें वायरल मैसेज की सच्चाई?

      देश नोवल कोरोना वायरस महामारी की दूसरी लहर से जूझ रहा है। हाल के दिनों में संक्रमण के आंकड़ों में थोड़ी कमी जरूर देखी गई है, लेकिन स्थिति अब भी बेहतर नहीं है। कोविड के इस दौर में विशेषज्ञ सभी लोगों को शारीरिक और मानसिक दोनों ही तरह की सेहत पर विशेष ध्यान देने पर जोर दे रहे हैं। इसके अलावा स्वास्थ्य विशेषज्ञ कहते हैं कि इस दौरान होने वाली किसी भी तरह की समस्याओं में बिना डॉक्टरी सलाह के किसी भी दवा का सेवन नहीं करना चाहिए। इन दिनों सोशल मीडिया पर एक पोस्ट वायरल हो रहा है जिसमें एक होम्योपैथिक दवा को कोरोना के सभी रोगियों को प्रयोग में लाने की सलाह दी जा रही है। आइए जानते हैं क्या वास्तव में यह दवा कोरोना में असरदार साबित हो सकती है? क्या है वायरल संदेश सोशल मीडिया के तमाम प्लेटफार्म पर वायरल एक पोस्ट में कोविड का उपचार बताया जा रहा है। पोस्ट में लिखा है- कार्बो वेजिटाबिल्स 30 नामक होम्योपैथिक दवाई की 2-3 बूंद से शरीर में ऑक्सीजन की मात्रा पूरी की जा सकती है। यह दवा इसलिए भी कारगर हो सकती है क्योंकि देश इस समय ऑक्सीजन की भारी कमी का सामना कर रहा है। जिस भी व्यक्ति को ...