MIT's Fractal kernel reveals previously unknown behavior in Apple's M1 chip
By
Rachel Gordon | MIT CSAIL
Fresh out the oven, still warm. Top of the tray.
Summary
MIT researchers developed a new operating system kernel called "Fractal" that gives security researchers a cleaner, more detailed view of processor behavior. Unlike standard OS kernels (macOS, Linux) that obscure low-level chip operations, Fractal was designed specifically for studying processor internals. Using Fractal, researchers discovered previously unknown behavior in Apple's M1 chip's branch predictor, revealing a potential vulnerability to speculative execution attacks like Spectre and Meltdown.
Key quotes
· 3 pulledWhen security researchers want to understand what a modern processor is really doing with the kind of detail that determines whether attacks like Spectre and Meltdown are possible, they usually run their experiments on top of an operating system that was never built for the job.
They open up macOS or Linux, patch the kernel by hand
Called Fractal and developed at MIT, the kernel has already surfaced previously unknown behavior in Apple's M1.
You might also wanna read
Researchers demonstrate first public macOS kernel memory corruption exploit on Apple M5 silicon
Researchers report the first public macOS kernel memory corruption exploit on Apple's M5 silicon, successfully bypassing Apple's MIE (Memory
Reverse Engineering Apple's M1 GPU: The Technical Journey to Linux Support on Apple Silicon
The article details the technical journey of reverse-engineering Apple's M1 GPU and developing Linux support for M1 and M2 Macs. It follows
User Discussion on Apple M Series Performance Advantages Over x86 Processors
A Hacker News user asks why x86 processors haven't caught up with Apple's M series chips, sharing their positive experience with an M1 Pro M
Apple Announces M5 Chip with Major AI Performance Improvements
Apple has announced its new M5 chip, representing a significant advancement in AI performance and overall chip capabilities. Built using thi
Analysis of Apple's iOS Security Architecture: SPTM, TXM, and Exclaves
This academic paper provides the first comprehensive analysis of Apple's iOS security architecture, focusing on SPTM (System Page Table Mana
How Researchers Bypassed Apple's M5 Memory Integrity Enforcement in Five Days
A detailed technical analysis of how security researchers (a three-person team with AI assistance) bypassed Apple's new Memory Integrity Enf
How Researchers Bypassed Apple's M5 Memory Integrity Enforcement in Five Days
A detailed technical analysis of how security researchers (a three-person team with AI assistance) bypassed Apple's new Memory Integrity Enf
