Apple Silicon chip has been exposed to security vulnerabilities that can be mitigated but at the expense of performance

Publisher:美好梦想Latest update time:2024-03-22 Source: IT之家Keywords:Apple  Silicon Reading articles on mobile phones Scan QR code
Read articles on your mobile phone anytime, anywhere

 According to news on March 22, security experts recently discovered a security vulnerability in Apple’s Apple Silicon chip, which can be exploited by hackers to steal user data. Experts said that although the vulnerability can be mitigated and fixed, it will seriously affect performance.

The vulnerability exists in the Data Memory-Dependent Prefetcher (DMP) and allows hackers to steal encryption keys and access user data.

DMP, also known as the indirect memory prefetcher, is located in the memory system and can predict the memory address of the data that the currently running code is most likely to access.

Hackers can use existing access patterns to predict the next data bit to be obtained, thereby affecting the data being prefetched and accessing the user's sensitive data. The researchers named this attack "GoFetch".

The researchers confirmed that a hacker could disguise the data as a pointer, trick the DMP into seeing it as an address location, and pull that data into the cache. This attack cannot crack the encryption key immediately, but it can eventually obtain the key through repeated attempts.

The GoFetch attack uses the same user permissions as many other third-party macOS applications and does not require root access, which lowers the barrier to actually running the attack.

The researchers' test application was able to extract a 2048-bit RSA key in less than an hour, and a 2048-bit Diffie-Hellman key in just over two hours.

The problem facing Apple is that because this vulnerability exists in the core part of the Apple Silicon chip, it cannot be completely repaired in the short term.

And any mitigation measures deployed by Apple will increase the amount of work required to perform the operation, thereby affecting performance.


Keywords:Apple  Silicon Reference address:Apple Silicon chip has been exposed to security vulnerabilities that can be mitigated but at the expense of performance

Previous article:The U.S. government provides Intel with huge subsidies to promote localization of semiconductor production
Next article:The Ministry of Commerce responded to the U.S. providing huge subsidies and tax incentives to the local chip industry

Latest Semiconductor design/manufacturing Articles
Change More Related Popular Components

EEWorld
subscription
account

EEWorld
service
account

Automotive
development
circle

About Us Customer Service Contact Information Datasheet Sitemap LatestNews


Room 1530, 15th Floor, Building B, No.18 Zhongguancun Street, Haidian District, Beijing, Postal Code: 100190 China Telephone: 008610 8235 0740

Copyright © 2005-2024 EEWORLD.com.cn, Inc. All rights reserved 京ICP证060456号 京ICP备10001474号-1 电信业务审批[2006]字第258号函 京公网安备 11010802033920号