Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Apple cannot update this away; the vulnerability goes down to the very lowest levels of the software to the code burned into ROM.


They were able to update it away on the iPhone X. Checkrain doesn’t work on iOS 14 anymore.


Well, somewhat. They’re doing a clever side channel based on the SEP’s RNG to panic the device when booting from DFU, but this has already been bypassed on older devices via a bug in SEPROM. I believe they already have code execution in the A11’s enclave as well, but that one has some sort of replay protection that complicates matters.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: