Severe Thunderbolt flaw discovered affecting Mac’s shipped between 2011-2020

Avatar for Holden Satterwhite
tunmac
tunmac

Seven severe Thunderbolt security flaws have recently been discovered affecting two variants of Mac systems, Thunderbolt equipped Mac’s and Type-C compatible thunderbolt equipped Mac’s. The severe security flaw allows an attacker to access data when the machine is locked and when the drive is encrypted. The flaws are present in all machines equipped with thunderbolt/type-c thunderbolt ports shipped between 2011 and 2020.

Björn Ruytenberg found seven vulnerabilities in Intel’s thunderbolt chips:

  1. Inadequate firmware verification schemes
  2. Weak device authentication scheme
  3. Use of unauthenticated device metadata
  4. Downgrade attack using backwards compatibility
  5. Use of unauthenticated controller configurations
  6. SPI flash interface deficiencies
  7. No Thunderbolt security on Boot Camp

There is no way to detect a machine that has been compromised. Apple is yet to comment on this security issue.

You can read the full summary here: https://thunderspy.io

Stay updated with the latest Apple news at Appleosophy and follow our Telegram News Channel here. Join the Appleosophy Community on Telegram here.

Total
0
Shares
Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
Related Posts