Live data from Hacker News

Apple’s T2 security chip jailbreak

reportcybercrime.com

51–60 of 393 posts

Re: Apple’s T2 security chip jailbreak

#51
post #32

Earlier quoted context omitted.

>The fact that Apple uses this chip to, among other things, block "unauthorized repair" I actually dont mind they block unauthorised repair, at least I believe in the Steve Jobs's Apple era he wanted the best customer experience. And they want the Data of what is failing in their Mac where their Genius Bar gain first hand experience and knowledge which leads to feedback to the Design team. ( They dont publicly announ…

> The goal was to aim for perfection, a machine that is so reliable it wouldn't need to repair in the first place. You will have to excuse me, but that is a load of bullcrap. Let's take the case that irritates me the most: The SSD. By definition of the technology that is NAND storage, an SSD will be able to operate "within norm" and without bit errors for so long. Rewrite for long enough and you'll see your data wavi…

>By definition of the technology that is NAND storage, an SSD

You see, I dont disagree. Apple was striving for an ideal that is not achievable. What they are aiming, trying and actually doing are three different thing.

Re: Apple’s T2 security chip jailbreak

#52
post #17

Earlier quoted context omitted.

The things stored in the enclave are encrypted with a key derived from, among other things, your device password so no jailbreak is going to provide access to them. It would be a big deal if one could, say, run 'offline' dictionary attacks against secure enclave content.

> run 'offline' dictionary attacks against secure enclave content. Isn't the T2 chip the only reason they can't do that:: because it sets a minimum time-limit and cooldown period on attempts to authenticate using the device passcode? So presumably rooting T2 and removing the artificial time limits and/or extracting KDF data would mean game-over because brute-forcing `[0-9]{4,8}`, with even the most expensive hash fun…

De-capping would probably be much harder than rooting T2.

Re: Apple’s T2 security chip jailbreak

#53
post #24

Earlier quoted context omitted.

Doom on touchbar (2016) https://www.theverge.com/circuitbreaker/2016/11/21/13697058/... https://twitter.com/b3ll/status/800472338496036864?s=20

Back in the days, we had bootsector games. In the future we will have TouchBar games running before even the OS boots.

or at least get the macOS loading gauge to the touchbar ;)

Re: Apple’s T2 security chip jailbreak

#54
post #45

Earlier quoted context omitted.

I'd guess many in third-world countries buy second-hand Macbooks, as they have a reputation (at least in the past) for lasting a long time? And are there any first-world countries (except maybe the US^^) where a 13" Macbook is several times the average net monthly income? In Germany, for instance, the monthly average net wage (MANW) is €2500, while the price of a 13" Macbook starts at €1300. Italy: MANW is €1700, Spa…

You mixed that reputation up with Lenovo thinkpads. Apple keyboards break down after several years with the touchpad and butterfly keyboard disasters are even unusable afresh. You cannot replace anything, and are way overpriced. Thinkpads on the other hand are like Toyota's

My 2016 MBPr was of the first gen with all these changes and it's doing fine as I type this message.

Re: Apple’s T2 security chip jailbreak

#55
post #51

Earlier quoted context omitted.

> The goal was to aim for perfection, a machine that is so reliable it wouldn't need to repair in the first place. You will have to excuse me, but that is a load of bullcrap. Let's take the case that irritates me the most: The SSD. By definition of the technology that is NAND storage, an SSD will be able to operate "within norm" and without bit errors for so long. Rewrite for long enough and you'll see your data wavi…

>By definition of the technology that is NAND storage, an SSD You see, I dont disagree. Apple was striving for an ideal that is not achievable. What they are aiming , trying and actually doing are three different thing.

> Apple was striving for an ideal that is not achievable

They are aiming for planned obsolescence. The biggest competitor for new MacBooks are old MacBooks.

Re: Apple’s T2 security chip jailbreak

#56
I'm torn on this; on the one hand, the prospect of being able to circumvent things like unauthorized repair prevention down the line is neat, and who knows what people may be able to tease out of this (apparently quite powerful chip). So that's neat.

But it also breaks Apple's security platform in a big way, since this should make Apple's biometry scheme in their Macbooks much weaker and FileVault a lot easier to crack. That's a shame, because it's a very neat and cohesive security platform that gets out of one's way and works really well even for highly non-technical people. Their security stance is one of the things that keep me in Apple's ecosystem and I know a number of people and companies who feel alike. So, coming from that point of view, I do hope they fix this in time for their first round of ARM Macs.

Re: Apple’s T2 security chip jailbreak

#57

Earlier quoted context omitted.

Fair enough, but the problem is mainly when you are in a third world country and parts are very difficult to get, and where Mac stores are non-existent.

People in third world countries buy Macbooks - really? A decent macbook is several times above an average monthly income in a first-world country already...

[deleted]

Re: Apple’s T2 security chip jailbreak

#58

I'm torn on this; on the one hand, the prospect of being able to circumvent things like unauthorized repair prevention down the line is neat, and who knows what people may be able to tease out of this (apparently quite powerful chip). So that's neat. But it also breaks Apple's security platform in a big way, since this should make Apple's biometry scheme in their Macbooks much weaker and FileVault a lot easier to cra…

So, if only Apple didn't tie the ability to repair and extend the device you purchased from them to the security of your own data, you would be able to feel a more consistent emotion with regards to interest in a fix; that seems all on Apple being a bit evil :/.

Re: Apple’s T2 security chip jailbreak

#59
post #35

Hi guys, I am part of the team working on all things T2. [1] The checkra1n support is just in a PoC state, it will successfully exploit and boot the T2. The payload support is partially broken, but being worked on. Additionally, we have SSH working over usbmuxd from a tethered device [2] and SSH working from macOS on device, with an SDK in the works [3]. Some key takeaways from the T2 being jailbroken: - Custom Bootl…

Incredible work.

> It's a pretty peppy chip, at times coming close to my 8th gen i7...yikes.

Have you got any benchmarks? It is passively cooled right? I am really surprised to hear a ~2016 arm64 CPU can can beat a 2019 Intel i7 in even synthetic benchmarks.

Re: Apple’s T2 security chip jailbreak

#60

Earlier quoted context omitted.

People in third world countries buy Macbooks - really? A decent macbook is several times above an average monthly income in a first-world country already...

I'd guess many in third-world countries buy second-hand Macbooks, as they have a reputation (at least in the past) for lasting a long time? And are there any first-world countries (except maybe the US^^) where a 13" Macbook is several times the average net monthly income? In Germany, for instance, the monthly average net wage (MANW) is €2500, while the price of a 13" Macbook starts at €1300. Italy: MANW is €1700, Spa…

The MANW in the United States is €4500 equivalent, the fourth highest in the world.

Since you could have derived this data from the same source as all the other numbers in your post, I'm not sure what the point of your little dig was.

Post reply on HN