apple patient
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
  • iPhone 18
  • iOS 27
  • iPadOS 27
  • macOS
  • MacBook Neo
  • iPhone 17e
  • AirTags
  • iOS 26
  • iPhone 17
  • MacBook Pro
  • iPadOS
  • iMac
  • Mac mini
  • HomePod
  • Apple TV
  • iPad Pro
  • iPhone Air
  • Apple Vision Pro
  • iPhone 16
  • AirPods 4
  • Apple Watch Ultra
  • HomePod Mini
  • MacBook Air
  • iPad
  • AirPods Max
  • AirPods Pro 3
  • Apple Watch Series 3
  • Mac Studio
  • Studio Display
  • iPad Air
  • iPad mini
  • watchOS 27
  • Apple CarPlay
  • Apple Pay
  • watchOS 26
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
apple patient
No Result
View All Result

FileVault: New vulnerability discovered in Intel chips

Milan Jovicic by Milan Jovicic
6. March 2020 - 17:32 CET
in Apple News
0
Cybersecurity and computer security concept. Notebook and login screen and padlock symbolizing computer security.

Cybersecurity and computer security concept. Notebook and login screen and padlock symbolizing computer security.

WhatsAppFacebookEmail
Threads

Following the Meltdown and Spectre security vulnerabilities, a new hardware-based exploit has now been discovered in Intel chips. This is said to make Apple's FileVault technology vulnerable. 

Last year, the Meltdown and Spectre security vulnerabilities were discovered, which caused a lot of trouble. According to current reports, the security vulnerabilities at that time have since been fixed. But now there seems to be a new problem and it is said to be unpatchable. According to reports, the SSD encryption FileVault on Mac devices without T1 and T2 chips is at risk. 

The purpose of FileVault

FileVault technology is basically designed to encrypt the entire hard drive. The AES128-bit XTS standard encryption is used by default. However, the Disk Utility also offers the AES256-bit XTS version, which is military-grade encryption that makes the Mac 100 percent secure. According to a new report from The Register, however, this very "feature" is at risk. A brand new hardware-based vulnerability in Intel chips can make FileVault vulnerable, as the security hole is said to be unpatchable. According to initial findings, attackers could compromise the Mac's boot process to gain access to the codes responsible for encrypting the hard drive. The problem is described as follows: explained: 

The problem revolves around cryptographic keys that, if obtained, can be used to break the root of trust in a system. Buried deep inside modern Intel chipsets is what is known as the Management Engine, or nowadays the Converged Security and Manageability Engine (CSME).

Like a digital janitor, the CSME works behind the scenes, beneath the operating system, hypervisor, and firmware, performing many important low-level tasks such as booting up the computer, controlling power levels, starting the main processor chips, verifying and booting the motherboard's firmware, and providing cryptographic functions. The engine is the first thing that runs when a machine is turned on. One of the first things it does is set up memory protections on its own built-in RAM so that other hardware and software cannot interfere with it. However, these protections are disabled by default, so there is a tiny time gap between when a system is turned on and the CSME executing the code in its boot ROM that installs these protections, which come in the form of input-output memory management unit (IOMMU) data structures called page tables.

During this time gap, other hardware - physically connected or present on the motherboard - capable of firing a DMA transfer into the CSME's private RAM can overwrite variables and pointers and take over execution. At this point, the CSME can be seized for malicious purposes without the software running on top of it noticing. It's like a sniper shooting a sliver of a target while shooting past small cracks in a wall. The DMA write race can be attempted when the machine is powered on or awakens from sleep. If someone manages to extract this hardware key, they can unlock the chipset key and, with code execution within the CSME, undo Intel's root of trust in large product areas at once. When this happens, total chaos will reign. Hardware IDs will be spoofed, digital content will be extracted, and data from encrypted hard drives will be decrypted.

Therefore, the Mac should not be released

The exploit is not only hardware-based, it is also considered unpatchable. Anyone who passes their Mac on to third parties is making themselves vulnerable, as the security hole can only be exploited if attackers gain physical access to the device. Intel's advice is that the affected devices must remain in the "physical possession" of the owner. But not all Macs are affected. According to the report, Apple devices with the T1 and T2 security chips are not affected, as these are activated before the Intel chip when the Mac boots up, and the FileVault encryption codes are stored in the "Secure Enclave". Accordingly, only "older" devices are affected by the problem. (Photo by Jakub Jirsak / Bigstockphoto)

  • Kr00k: Security flaw discovered in Wi-Fi encryption
Make Apfelpatient a preferred source One click – and you'll see us more often on Google
Was this article helpful?
YesNo
Via: The Register
Tags: Macsecurity gap
SendShare37Send
Share

Our Amazon Storefront

A handpicked selection of products for iPhone, Mac and more – sorted by topic and updated regularly.

Shop Now

This post contains affiliate links (including Amazon). We earn a small commission on qualifying purchases – at no extra cost to you. Learn more on our Partner Program page.

Previous Post

Backup: WhatsApp tests new security feature

Next Post

Apple recommends employees work from home

Milan Jovicic

Milan Jovicic

Milan founded Apfelpatient in 2016 and has been responsible for all editorial content since 2018 — news, rumors, guides, and product reviews. Apple devices here are not test units on loan for two weeks but everyday tools: from the iPhone through MacBook Pro, MacBook Air, and iMac to the Apple Vision Pro, at least one device from nearly every product category is in daily use, many of them replaced annually. Every menu path in a guide is verified on the device before it is published.

Key art for the Apple TV series Pluribus showing a screaming woman against a yellow background, with Pluribus season 2 about to begin filming

Pluribus: Gilligan plans at least three seasons

August 12, 2026 - 8:27 PM CEST
The iPhone 17 lineup in five colors seen from the back, whose successor is expected to adopt the smaller iPhone 18 Dynamic Island from the Pro models

iPhone 18: Smaller Dynamic Island already in the base model

August 12, 2026 - 8:13 PM CEST
Drawn outline of the folded iPhone Ultra with square corners on the hinge side and rounded corners opposite, matching the leaked iPhone Ultra screen protectors

iPhone Ultra: Screen protectors reveal the camera position

August 12, 2026 - 3:58 PM CEST

About APFELPATIENT

APFELPATIENT brings you the latest Apple news, product updates, guides, reviews and tips across the entire Apple ecosystem — from the iPhone to the Mac to the Apple Vision Pro. From the first rumors to confirmed news: researched responsibly.

Follow Apfelpatient

Facebook Instagram YouTube Threads Threads

Company

  • About Apfelpatient
  • Contact
  • Author Profiles

Community

  • Netiquette
  • Push Notifications
  • RSS feed

Legal

  • Legal Notice
  • Privacy Policy
  • Terms of Use
  • Cookie Settings
  • Affiliate Program

Resources

  • Sitemap

© 2026 Apfelpatient. All rights reserved.

No Result
View All Result
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights

© 2026 Apfelpatient. All rights reserved. Page Directory

Change language to Deutsch