“Augury” vulnerability discovered in Apple silicon and mobile chips | TechBuzz

- Advertisement -


Why it matters: Hardware-based security flaws like Spectre have been a serious issue for Intel and AMD since their discovery in 2018. Now one has emerged for Apple’s latest custom processors. Although not as serious as Spectre, it confirms that Apple silicon isn’t immune to vulnerabilities.

Researchers recently published a paper detailing a vulnerability they are calling Augury that affects Apple’s M1, M1 Max, and A14 processors. It might also reach older A-series chips and newer M1 relatives.

- Advertisement -

Although Augury hasn’t led to real exploits yet, it’s unique because it can leak data that neither the core nor any instructions have read. This nullifies many defenses against Spectre which work by tracking what data the core and instructions access.

Augury comes from Apple silicon’s use of a Data Memory-Dependent Prefetcher (DMP) which is an optimization that accounts for the content of previous memory prefetches. That method provides a clue as to the memory’s contents, making it possible to leak them.

The researchers don’t think Augury is very dangerous partly because it only prefetches valid virtual addresses. However, it can break ASLR (Address Space Layout Randomization), which could be the first step in a serious exploit.

- Advertisement -

The authors of the paper sent Apple all the details on Augury before publishing their findings, so the company could provide a fix if it ever becomes a problem.





Source link

- Advertisement -
Adminhttp://techbuzz.asia
I am admin of techbuzz.asia blog & I provide tech-related news. As a part of my hobby, I make content related to technology and gadgets reviews too. I love to be a content creator apart from it, I am a full-time employee in an MNC company and manage blogs systematically. You can mail me at [email protected]

More from author

Related posts

Advertisment

Latest posts

Xiaomi Mega Bundle: Redmi Note 11, Earbuds & 10 GB for less than €13/month | TechBuzz

Are you looking for a powerful smartphone including a tariff at a reasonable price? In the Curved Shop you can get the Xiaomi...

WWDC: macOS Alcatraz? | TechBuzz

The name macOS Alcatraz was, of course, just a joking name for Apple's next operating system. Nevertheless, in this issue we also speculated about...

Windows 11 version 22H2 – a new major update coming to us in the second half of the year | TechBuzz

Microsoft is currently working intensively on a new version of Windows known as 22H2 version and codenamed Sun Valley 2. This is the...

Want to stay up to date with the latest news?

We would love to hear from you! Please fill in your details and we will stay in touch. It's that simple!