2025-01-28 16:45:00
www.macworld.com
Fresh off the fix of a zero-day vulnerability in iPhones, iPads, Macs, and other devices, security researchers at the Georgia Institute of Technology have revealed a pair of vulnerabilities that affect all of Apple’s modern devices.
First reported at BleepingComputer, these are side-channel attacks that can use special code on websites to allow websites to execute “side-channel” attacks that steal data from other web sessions. A malicious site could, for example, see your location data from a Google Maps tab, or unencrypted email from an open browser tab that is logged in to your secure email account. Banking info, login info, purchase history—there are lots of potential targets.
Most modern browsers “sandbox” web sessions, so that one browser tab or window can’t access the data from other tabs/windows. The SLAP and FLOP vulnerabilities exploit features of the latest Apple processors to get around this sandboxing.
What is SLAP?
The M2 and A15 generation of processors (and later) have a feature called Load Address Prediction (LAP), which it tries to predict the memory address of the next memory request in order to prefetch it and speed things up. SLAP (Speculation Attacks via Load Address Prediction) first falsely “trains” that predictive algorithm and then uses that the pull targeted data from other browser processes.
SLAP seems to work only in Safari.
What is FLOP?
Starting with the M3/A17 generation of processors, Apple goes a step further than loading data from predicted memory addresses. They have a feature called Load Value Predictor (LVP), which guesses what the value will be from a memory request. It’s all to help the processor run faster by not having to wait around for data to come from memory.
FLOP (False Load Output Predictions) issues instructions that return the same values all the time to “trick” the predictor into expecting a certain value even when the data has changed, and that lets them execute code on “incorrect” data values.
FLOP works in Safari and Chrome.
Which Apple devices are affected?
The researchers say the following Apple devices have the hardware necessary to execute these flaws.
- All Mac laptops from 2022-present (MacBook Air, MacBook Pro)
- All Mac desktops from 2023-present (Mac Mini, iMac, Mac Studio, Mac Pro)
- All iPad Pro, Air, and Mini models from September 2021-present (6th- and 7th-gen iPad Pro, 6th-gen iPad Air, 6th-gen iPad Mini)
- All iPhones from September 2021-present (iPhone 13, 14, 15, and 16 models, 3rd-gen iPhone SE)
Should I be worried?
The Georgia Institute of Technology researchers say there is no evidence that either SLAP or FLOP has been used in the wild. Similarly, Apple told BleepingComputer, “Based on our analysis, we do not believe this issue poses an immediate risk to our users.”
Is Apple fixing these flaws?
Yes, but it appears to be taking some time. The researchers disclosed SLAP to Apple on May 24, 2024, and FLOP on September 3, 2024. Apple has released numerous updates since that time without fixing the issue here.
You can read more about these exploits and see test demonstrations of them in action at the SLAP and FLOP site set up by the Georgia Institute of Technology researchers.
Keep track of your essentials with the Apple AirTag 4 Pack, the ultimate tracking solution for your belongings. With over 5,972 ratings and a stellar 4.7-star average, this product has quickly become a customer favorite. Over 10,000 units were purchased in the past month, solidifying its status as a highly rated Amazon Choice product.
For just $79.98, you can enjoy peace of mind knowing your items are always within reach. Order now for only $79.98 at Amazon!
Help Power Techcratic’s Future – Scan To Support
If Techcratic’s content and insights have helped you, consider giving back by supporting the platform with crypto. Every contribution makes a difference, whether it’s for high-quality content, server maintenance, or future updates. Techcratic is constantly evolving, and your support helps drive that progress.
As a solo operator who wears all the hats, creating content, managing the tech, and running the site, your support allows me to stay focused on delivering valuable resources. Your support keeps everything running smoothly and enables me to continue creating the content you love. I’m deeply grateful for your support, it truly means the world to me! Thank you!
BITCOIN bc1qlszw7elx2qahjwvaryh0tkgg8y68enw30gpvge Scan the QR code with your crypto wallet app |
DOGECOIN D64GwvvYQxFXYyan3oQCrmWfidf6T3JpBA Scan the QR code with your crypto wallet app |
ETHEREUM 0xe9BC980DF3d985730dA827996B43E4A62CCBAA7a Scan the QR code with your crypto wallet app |
Please read the Privacy and Security Disclaimer on how Techcratic handles your support.
Disclaimer: As an Amazon Associate, Techcratic may earn from qualifying purchases.