22.03.2024 20:46:53

'GoFetch' Flaw In Apple's M Chip Reveals Unfixable Vulnerability

(RTTNews) - A group of experts from various American universities has uncovered a new vulnerability in Apple Inc.'s (AAPL) M-series processors that could be leveraged to extract secret keys from Mac devices during cryptographic processes.

The researchers have dubbed this vulnerability "GoFetch," which exploits Data Memory-Dependent Prefetchers (DMPs) to predict and fetch upcoming data, to improve processing speed. However, this approach could inadvertently disclose information about the system's operations, making it a security risk. GoFetch is an advanced form of the Augury attack technique, which first emerged in 2022.

According to the study, DMPs, especially those found in Apple's processors, pose a significant threat to the security provided by constant-time programming models. The researchers have found that the GoFetch application can extract a 2048-bit RSA key in under an hour and a 2048-bit Diffie-Hellman key in slightly over two hours.

The researchers have confirmed that the M1 processors are vulnerable to this exploit, and given the comparable prefetching behavior of the M2 and M3 chips, they're likely to be vulnerable as well. Apple is presently looking into the issue, although fully addressing it appears to be difficult.

The researchers have recommended various countermeasures, but these may require complex hardware modifications or mitigations that could significantly impact performance. This vulnerability emphasizes the importance of the constant monitoring and updating of security measures to prevent any potential cyber threats.

The researchers' technical paper provides additional information on the GoFetch attack, with a proof-of-concept exploit set to be released later.

Analysen zu Apple Inc.mehr Analysen

29.11.24 Apple Neutral UBS AG
20.11.24 Apple Neutral UBS AG
19.11.24 Apple Overweight JP Morgan Chase & Co.
15.11.24 Apple Hold Jefferies & Company Inc.
07.11.24 Apple Neutral UBS AG
Eintrag hinzufügen
Hinweis: Sie möchten dieses Wertpapier günstig handeln? Sparen Sie sich unnötige Gebühren! Bei finanzen.net Brokerage handeln Sie Ihre Wertpapiere für nur 5 Euro Orderprovision* pro Trade? Hier informieren!
Es ist ein Fehler aufgetreten!

Aktien in diesem Artikel

Apple Inc. 236,05 0,45% Apple Inc.