DMA Attack Lets Hackers Retrieve Mac Encryption Passwords In 30 Seconds

Latest Videos FromTom's Hardware
Contributor

Lucian Armasu is a Contributing Writer for Tom's Hardware US. He covers software news and the issues surrounding privacy and security.

  • targetdrone
    I wonder if this was similar to the method the FBI used to hacked that Islamic Terrorist's phone that the FBI originally demanded Apple to write a custom OS for because "it was too hard for lazy FBI agents"
    Reply
  • jeremy2020
    This article is untrue. It is impossible for Macs to get hacked or get a virus
    Reply
  • spdragoo
    I can't tell if he's being serious or sarcastic...
    Reply
  • negusp
    Jeremy, you forgot your /s
    Reply
  • cmi86
    Hmm so much for mac's are safer because they can't get hacked or get virus's... I tried telling some apple people years ago that with popularity comes attention. Mac OS wasn't inherently any safer than a MS OS it's just that no one cared to hack them because there wasn't any market share. Go figure they didn't listen. I'd have a better chance of winning the lottery 2 times and getting struck by lighting all in one day then I would getting an apple zealot to accept common sense...
    Reply
  • Kimonajane
    Well at least they have to have physical access to your computer. Hopefully Apple updates this fast.
    Reply
  • Sam Hain
    Jeremy...

    Nothing is hack or virus proof. In fact, bad end-user (browsing) habits, poor AV defensive software (or lack of) OR being complacent in the trust of such myths of the likes of the Apple Fortress of Impregnability WILL increase the likelihood of such attacks and the challenge to hackers to conquer it.

    Why do you think AV, Mal-Ware, etc. programmers are always having to update their data bases for us end-users/subscribers???

    Answer... The black-hats are always trying something new and better, to get in. Encryption hacking/decoding is yet, just another and sometimes more rewarding challenge to them.
    Reply
  • Kewlx25
    Bootstrapping is always the hardest part.
    Reply
  • none12345
    "Well at least they have to have physical access to your computer. Hopefully Apple updates this fast."

    Considering the article said that apple has known about this since at least july....and they still havent fixed it....id say that apple has not(and likely wont) fix this fast.
    Reply
  • Kewlx25
    This attack only works because "untrusted" devices can gain access to DMA on boot. The only way to fight this is to have some notion of "trusted" devices, which leaves you with something like Secure Boot.
    Reply