Asahi Linux Dev Reveals ‘M1RACLES’ Flaw in Apple M1, Pokes Fun at Similar Flaws

M1RACLES
(Image credit: Hector Martin)

Asahi Linux developer Hector Martin has revealed a covert channel vulnerability in the Apple M1 chip that he dubbed M1RACLES, and in the process, he’s gently criticized the way security flaws have started to be shared with the public.

Martin’s executive summary for M1RACLES sounds dire: “A flaw in the design of the Apple Silicon ‘M1’ chip allows any two applications running under an OS to covertly exchange data between them, without using memory, sockets, files, or any other normal operating system features. This works between processes running as different users and under different privilege levels, creating a covert channel for surreptitious data exchange. […] The vulnerability is baked into Apple Silicon chips, and cannot be fixed without a new silicon revision.“ (Emphasis his.)

Nathaniel Mott
Freelance News & Features Writer

Nathaniel Mott is a freelance news and features writer for Tom's Hardware US, covering breaking news, security, and the silliest aspects of the tech industry.

  • -Fran-
    So, the other way to interpret this vulnerability is "unless you have the same tight control over the OS, you'll have a big chance of getting hacked". Hence, making the M1 usable for anything other than Apple's OS is pretty much moot.

    If that was the design intent behind this, then slow clap for the evil geniuses at Apple.

    Then again, my interpretation can be wrong and who cares anyway: catchy name and video!

    Cheers! XD
    Reply