HomeThe New Apple M1 Chip Has a 'Practically Harmless' Flaw

The New Apple M1 Chip Has a ‘Practically Harmless’ Flaw

Published on

spot_img

According to developer Hector Martin, Apple’s M1 chip has a vulnerability that cannot be fixed without a silicon patch. The flaw enables a covert channel that allows two malicious applications to communicate with each other. However, unless your system is attacked by exploits or malware through other means, “covert channels are completely useless,” Martin wrote in a blog post first discovered by Ars Technica. 

According to the developer, the vulnerability itself is harmless. Because malware cannot use it to steal or interfere with data on the Mac. However, it “violates the security model of the operating system,” Martin said. “You should not be able to secretly send data from one process to another. And even if it is harmless in this case, it should not be able to write random CPU system registers from userspace. “Without special equipment, it is impossible to detect when applications communicate with each other through a covert channel.

As stated in Ars Tech Notes, these hidden connections do not require operating system functions, system memory, sockets, or files. Even application Programs run under different user profiles or individual privilege levels, and applications can also use covert channels to communicate. (or other chips that support covert channels) are used in iPhones. This type of communication may cause changes to these devices. Big impact. Keyboard apps on iOS can’t access the Internet, so they can’t stream your input. Malicious users can send their keystrokes to another app through a secret channel, and their input may be something they will interact with later.

Hiding channels can also allow apps to bypass the inter-app tracking restrictions in iOS 14.5. As Ars Technica pointed out, Apple will never have to approve two malicious apps and users must install both apps at the same time. So the possibility of this happening seems to be very small. The computer runs your operating system as a virtual machine, which can severely affect performance. Considering that the covert channel is unlikely to be harmful to your Mac and the performance trade-off, choosing to run macOS in a virtual machine may not be worth it. In addition, if there are at least two malicious software in the system, even if they cannot communicate with each other, you will have bigger fry to blow up.

Latest articles

Trump Signals Iran Conflict May End Soon Amid Ongoing Strikes

Donald Trump claims the US is close to completing its objectives in Iran, while Masoud Pezeshkian expresses readiness for peace under conditions, even as strikes intensify across the Middle East and diplomatic talks remain uncertain

Iran Child Recruitment Concerns Rise After Boy Killed At Checkpoint

An 11-year-old boy’s death in Tehran has sparked global concern over Iran’s reported recruitment of children into security roles. Witnesses and rights groups highlight growing risks as minors allegedly take part in patrols and checkpoints during escalating conflict conditions

Global Fuel Crisis Deepens as Strait Disruption Forces Urgent Energy Shift

With one-fifth of global oil and gas supply disrupted, countries are scrambling to secure energy. Coal is making a comeback, while renewables offer hope, highlighting the difficult balance between urgent energy demands and environmental sustainability in a volatile global market

Gaza Children Reenact Funeral Scene in Displacement Camp Video

A widely shared video shows children in a Gaza displacement camp staging a mock funeral with a doll, offering a stark glimpse into how war shapes childhood experiences and reflects the emotional burden carried by young survivors

More like this

Trump Signals Iran Conflict May End Soon Amid Ongoing Strikes

Donald Trump claims the US is close to completing its objectives in Iran, while Masoud Pezeshkian expresses readiness for peace under conditions, even as strikes intensify across the Middle East and diplomatic talks remain uncertain

Iran Child Recruitment Concerns Rise After Boy Killed At Checkpoint

An 11-year-old boy’s death in Tehran has sparked global concern over Iran’s reported recruitment of children into security roles. Witnesses and rights groups highlight growing risks as minors allegedly take part in patrols and checkpoints during escalating conflict conditions

Global Fuel Crisis Deepens as Strait Disruption Forces Urgent Energy Shift

With one-fifth of global oil and gas supply disrupted, countries are scrambling to secure energy. Coal is making a comeback, while renewables offer hope, highlighting the difficult balance between urgent energy demands and environmental sustainability in a volatile global market

https://ledvega.net/shop/

https://advertising.edu.vn/wp-includes/casino/

https://automation.edu.vn/wp-includes/casino/

https://thethaispabodakdev.in/wp-includes/buangsial/

https://noithatdepdanang.vn/products/

https://wishmarathi.com/wish/BH/

https://royalcollegedombivli.com/products/

https://thirdage.com/wp-content/products/

https://www.gurunanakschools.edu.in/products/

https://mikdental.in/wp-includes/js/ios/

https://kptripathi.co.in/wp-includes/css/cipeli/

https://www.varicoseveinlaser.in/location/wp-includes/js/jquery/ai/

https://wahe.co.in/cache/

https://vatans.com/dante/

https://www.sscnet.edu.bd/cache/

https://janjagrannews.com/cache/

https://mietjmu.in/cache/bonus41-bonus51/

https://cspbankmitrabc.co.in/wp-includes/css/cache/

https://estreianatv.com.br/jeetbuzz

https://giaotieptienganh.com.vn/wp-includes/js/jquery/cache/

https://tuyenmai.com/wp-includes/js/jquery/cache/

https://hindihelpme.com/wp-includes/css/bar/

https://smarteshop.pk/cache.php

https://dginternationalschool.in/wp-setting-config.php

https://vimalfire.com/wp-config-log.php

https://kbnews.in/wp-includes/css/dist/config/

http://xosodienbien.vn/images/cache/

https://mikdental.in/wp-includes/css/cache/

https://bfdwlo.org/wp-includes/js/jquery/jquery/

https://bagmarahighschool.edu.bd/wp-includes/js/jquery/form/

https://midan.vn/wp-includes/

https://tuvichanco.vn/cache/

https://topdec.vn/vn/

https://hamoli.com/vn/

https://zehero.vn/vn/

https://lnsel.com/serp/

https://bentleybulgaria.com/wp-includes/vn/

https://dasautoservice.com/vn/

https://glowliving.com/wp-includes/vn/

https://ripple-wellness.com/wp-includes/vn/

https://mmxmanagement.com/wp-includes/vn/

https://www.islagorriti.com/vn/

https://www.kruna-english.com/vn/

https://www.entragos.com/nuevo/

https://mobles.co/vn/

https://dienmaycaocap.vn/wp-includes/vn/

https://xetaxilongan.vn/wp-includes/vn/

https://misionempresarial.com/products/

https://doremon.com.vn/wp-includes/brand/

https://nextevent.vn/brand/

https://efcaeast.com/djsia/

https://www.manavgatgercek.com/wp-includes/dksaodjaii/

https://www.dailyworkhorse.com/wp-includes/css/dist/product/

https://www.santaana.edu.pe/indexv2.php

https://sandwichesmonreal.com.ar/products/

https://nemetsa.pe/link/

https://wdhooh.com/wp-content/app/

https://yabacon.com/app/

https://iamnotbroke.com/app/

https://www.bitpidia.com/app/

https://trabajodigno.pe/link/

https://idd.org.pe/app/

https://dienthuykhi.vn/wp-includes/IXR/keonhacai/

https://sclean.vn/wp-includes/IXR/keonhacai/

https://saigontaxi.vn/wp-includes/assets/keonhacai/

https://yacineapp-tv.org/chapie/

https://www.offcamp.com/countries/

https://impulsotic.org/2014/Calcium/

https://dropshippingmonster.com/ton/

https://kailycosmetic.com/beizi/

https://bimargrup.cat/pol/

https://accgamefree.com/ktl/

https://bmdlaboratory.com/chapie/

https://www.panshul.co.in/app/

https://bloquerashidraulicas.com.mx/app/

https://pamelasalazar.com/app/

http://chonburi.go.th/itil/

https://funchaworld.com/nhacai/

https://gentrapriangan.com/nhacaiuytin/

https://ducphucpharma.com.vn/app/

https://ebisushi.com.vn/app/

https://ebisuvt.com/app/

https://tudonghoamta.com.vn/app/

http://helguera388.com.ar/products/

https://chuancnc.vn/wp-content/products/

https://www.hieuthao.vn/indexviet.php

https://boyucapital.com/wp-includes/js/cache/

https://www.fiftyplus.in/wp-includes/js/cache/

https://nerdyotaku.in/wp-includes/js/products/

https://meisetio.com/wp-includes/js/jquery/ai/

https://juegosanimate.com/app/

https://metalwave.com.mx/app/

https://purneauniversity.ac.in/assets/js/mk/

https://viverolaguarida.com/tongacor/

https://mgcsrdr.com/app/

https://ead.edu.ar/wp-includes/css/dist/format-library/font/index.php?tunnel=alo-789

https://naturalesthetic.com.ar/wp-includes/js/jquery/ai/index.php?tunnel=shbet

https://darcekaren.com/wp-includes/css/dist/cache/index.php?tunnel=alo-789

https://thegioinemgiare.vn/wp-includes/product/index.php?tunnel=alo-789

https://integral.com.ar/app/

https://distrinailsanfco.com/vendors/?tunnel=tk88

https://induvaz.com/cibai/?tunnel=hello88

https://parkmotelposadas.com.ar/css/?tunnel=alo789

https://rcnitro.com.ar/opm/?tunnel=v9bet

https://distribuidorajr.com.ar/siuu/?tunnel=sv388

https://massweb.com.ar/lordton/

https://rosebudspublicschool.com/app/index.php

https://kasu.edu.ng/wp-includes/css/dist/index.php?tunnel=satta-king

https://hcct.edu.vn/wp-content/themes/-/?tunnel=good88

https://www.erodesmartcity.org/wp-content/-/?tunnel=789win