Live data from Hacker News

Apple’s T2 security chip jailbreak

reportcybercrime.com

351–360 of 393 posts

Re: Apple’s T2 security chip jailbreak

#351

Earlier quoted context omitted.

Why without an Nvidia GPU? Just go with an XPS 15 or 17 and embrace Nvidia on Linux. I have three developers running Linux on HP zBooks with Nvidia GPUs without any hassle. You can also buy any newer Thinkpad (my recommendation). They are also available with AMD CPUs. It's pretty easy to buy Linux laptops these days.

Nvidia gpus require proprietary drivers that are only provided for specific distros and are only supported for a small amount of time. And if you find any bug well tough luck, nobody can help you. For a work setup that you rely on someone else in the company for support they might be fine but I wouldn't recommend them for a personal setup. All this is on top of the fact that they still don't support Wayland and you h…

> that are only provided for specific distros

Last time I looked, it was perfectly possible to install them directly, without support by the distro. Yes, it's more work.

> Nvidia gpus require proprietary drivers

There's an open source driver, nouveau, but of course it's behind the newest hardware.

Re: Apple’s T2 security chip jailbreak

#352

Earlier quoted context omitted.

> I honestly cannot find a laptop with the combination of 64 GB RAM, a non-NDIVIA GPU, and other premium hardware like its market-leading trackpad at this time Only 14”, and perhaps less performant, but here is this one: https://puri.sm/products/librem-14/ .

It's trackpad probably isn't as good as that of the MBP.

This is true. But it has many other advantages related to users’ freedom and security, e.g., you can open it and upgrade, it has Coreboot, kill switches: https://puri.sm/posts/librem-14-shipping-in-december/.

Re: Apple’s T2 security chip jailbreak

#353
post #262

Earlier quoted context omitted.

What is a non-proprietary solution for full-disk encryption?

luks or zfs.

I want not note, that ZFS is not full disk encryption. ZFS native encryption was designed to allow secure backups via "zfs send | zfs receive" mechanism, so it encrypt only data blocks, and not metadata.

LUKS and GEIL are full-disk encryption systems, and if you need FDE, you must use them under ZFS, not ZFS native encryption.

Re: Apple’s T2 security chip jailbreak

#354

Earlier quoted context omitted.

Incredible work. > It's a pretty peppy chip, at times coming close to my 8th gen i7...yikes. Have you got any benchmarks? It is passively cooled right? I am really surprised to hear a ~2016 arm64 CPU can can beat a 2019 Intel i7 in even synthetic benchmarks.

A ~2017 i7 is only 4% slower than a ~2019 i7: https://cpu.userbenchmark.com/Compare/Intel-Core-i7-8700-vs-...

Userbenchmark is not a good site to use. Although it is typically the first search result, most hardware subreddits have banned it or issued notices on how biased or even false their content is (eg. An i3 considered better than a Ryzen 9 3900x).

Re: Apple’s T2 security chip jailbreak

#355
post #350
post #349

Earlier quoted context omitted.

Are you seriously claiming that anything short of omniscience is useless? In most fields people deal with incomplete data on a daily basis and this is no different. CVEs don’t tell you everything but they definitely give you more than zero, and more to the point, the many vulnerabilities in open source projects suggests that the very broad but completely unsupported claim I was responding to is based on ideology rath…

> the many vulnerabilities in open source projects suggests that the very broad but completely unsupported claim I was responding to is based on ideology rather than reasoned analysis Does it? In order to claim that, one would have to have some idea of (a) the ratio of disclosed vulnerabilities to true vulnerabilities discovered in both open source, accessible code vs closed source, hardware locked code, and (b) the…

Unless you know the true ratio, you can't claim that open source projects are better either. Or that one has advantages over the other when it comes to cryptographic security.

I'm not GP and I'm not arguing for either side, just pointing i tout.

Re: Apple’s T2 security chip jailbreak

#356
post #35

Hi guys, I am part of the team working on all things T2. [1] The checkra1n support is just in a PoC state, it will successfully exploit and boot the T2. The payload support is partially broken, but being worked on. Additionally, we have SSH working over usbmuxd from a tethered device [2] and SSH working from macOS on device, with an SDK in the works [3]. Some key takeaways from the T2 being jailbroken: - Custom Bootl…

Incredible work. > It's a pretty peppy chip, at times coming close to my 8th gen i7...yikes. Have you got any benchmarks? It is passively cooled right? I am really surprised to hear a ~2016 arm64 CPU can can beat a 2019 Intel i7 in even synthetic benchmarks.

T2 was first introduced in 2018 MacBooks. 2016-7 iBridges run on T1

Re: Apple’s T2 security chip jailbreak

#357
post #97
post #46

Earlier quoted context omitted.

But with random seeds not

What you are referring too is a salt

Nope. A salt is something different. It is persistent and part of the hash result. A seed is not persistent and not part of the result. ie. it can be generated on T2 power-on.

Re: Apple’s T2 security chip jailbreak

#358
post #84
post #45

Earlier quoted context omitted.

You mixed that reputation up with Lenovo thinkpads. Apple keyboards break down after several years with the touchpad and butterfly keyboard disasters are even unusable afresh. You cannot replace anything, and are way overpriced. Thinkpads on the other hand are like Toyota's

> Apple keyboards break down after several years with the touchpad and butterfly keyboard disasters are even unusable afresh. You cannot replace anything, and are way overpriced. I have 10 and 15 year old iBooks and MacBooks and MacBook Pros with intact keyboards... You mixed the issue with the butterfly BS keyboards in the past 2-3 years with the old Apple keyboards (which didn't just "break down"). The resale value…

I have 5 good old macbook airs without the problematic butterfly keyboard and they all became unusable with some dead keys after around 5 years. For 1 or 2 keys you can workaround it, but then you can throw it away.

Does not happen with proper keyboards. Esp. thinkpads.

Re: Apple’s T2 security chip jailbreak

#359
post #204

Earlier quoted context omitted.

you are right, just redid the calculation and i am at 33k post-tax too. i guess i had the family bonus still active when i did it last time. nobody discussed salaries in germany/UK either though. wasn't just a problem in vienna for me ;) how are the salaries in vienna these days for software devs?

No idea since I don't live in Vienna but afaik worse than in German/Swiss tech hubs but at a lower CoL. Whether the overall salary/CoL ratio is a better deal for you here than in the other hubs really depends on how good your salary is and how much you'll spend.

Well, there is a variety of choices, there is a good selection of excellent coworking places in Wien, Salzburg, Graz. I used to live in Vienna, so found a few interesting places her https://www.matchoffice.at/mieten/coworking/wien-city

Re: Apple’s T2 security chip jailbreak

#360

Earlier quoted context omitted.

My 2017 MBPr isn't quite the same -- I've had the keyboard changed 3 times so far due to the double key tap issue. I don't mind though; I'm actually happy when it happens because I get a new battery and top case for free.

How do I get a replacement though?

Ask Apple - it's called the Keyboard Service Program
Post reply on HN