{"id":647799,"date":"2026-05-15T15:00:14","date_gmt":"2026-05-15T13:00:14","guid":{"rendered":"https:\/\/mybroadband.co.za\/news\/?p=647799"},"modified":"2026-05-15T15:03:54","modified_gmt":"2026-05-15T13:03:54","slug":"apples-most-powerful-mac-protection-cracked-in-one-week","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/647799-apples-most-powerful-mac-protection-cracked-in-one-week.html","title":{"rendered":"Apple&#8217;s most powerful Mac protection cracked in one week"},"content":{"rendered":"\n<p>A team of researchers used AI to compromise MacOS in an attack that defeats Apple&#8217;s most powerful hardware security system, which previously blocked all other known attacks.<\/p>\n\n\n\n<p>Many security experts consider Apple devices the world&#8217;s most secure consumer platform, but the researchers used Mythos, Anthropic&#8217;s most powerful generative model, to crack MacOS.<\/p>\n\n\n\n<p>According to researchers at security company Calif, the hack began at an unprivileged local user level and ended with full administrative access to the operating system.<\/p>\n\n\n\n<p>&#8220;We&#8217;ve been on a fun journey exploring how AI can help build exploits that still work under MTE,&#8221; researchers said in a blog post detailing the hack.<\/p>\n\n\n\n<p>MTE is ARM&#8217;s Memory Tagging Extension, the core of Apple&#8217;s hardware-assisted memory-safety system, Memory Integrity Enforcement (MIE). The goal was to hack MIE.<\/p>\n\n\n\n<p>&#8220;It was introduced as the marquee security feature for the Apple M5 and A19, specifically designed to stop memory corruption exploits,&#8221; they said.<\/p>\n\n\n\n<p>Through the hardware-assisted memory safety system, which Apple punted as its mightiest security feature, the researchers were able to perform a complete hack of MacOS memory.<\/p>\n\n\n\n<p>They said this was the vulnerability class behind many of the most sophisticated compromises on iOS and MacOS environments.<\/p>\n\n\n\n<p>&#8220;Memory corruption remains the most common vulnerability class everywhere, including iOS and MacOS,&#8221; they explained.<\/p>\n\n\n\n<p>&#8220;In security, if you can&#8217;t fully prevent something, you mitigate it by making exploitation more expensive.&#8221;<\/p>\n\n\n\n<p>Apple pushed many mitigation measures directly into its hardware, making bypassing them significantly more difficult. The latest of these was MIE.<\/p>\n\n\n\n<p>&#8220;Apple spent five years building it. Probably billions of dollars too,&#8221; they said. MIE can disrupt every public exploit chain targeting modern iOS, including the widely reported Corona and DarkSword exploits.<\/p>\n\n\n\n<p>Calif said that the attack path to crack MacOS started with an accidental discovery. One of its researchers, Bruce Deng, found the bug that would be the doorway on 25 April 2026.<\/p>\n\n\n\n<p>Deng was joined by Bion Blazakis and Josh Maine in carrying out the exploit, and by 1 May, the team had created a working exploit.<\/p>\n\n\n\n<p>&#8220;The implementation path involves two vulnerabilities and several techniques, targeting bare-metal M5 hardware with kernel MIE enabled,&#8221; they said.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Mythos was used to crack Apple&#8217;s strongest on-device security mitigation<\/h2>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1200\" height=\"675\" src=\"https:\/\/mybroadband.co.za\/news\/wp-content\/uploads\/2026\/03\/Dario-Amodei-Anthropic.jpg\" alt=\"\" class=\"wp-image-636129\" srcset=\"https:\/\/mybroadband.co.za\/news\/wp-content\/uploads\/2026\/03\/Dario-Amodei-Anthropic.jpg 1200w, https:\/\/mybroadband.co.za\/news\/wp-content\/uploads\/2026\/03\/Dario-Amodei-Anthropic-600x338.jpg 600w, https:\/\/mybroadband.co.za\/news\/wp-content\/uploads\/2026\/03\/Dario-Amodei-Anthropic-768x432.jpg 768w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" \/><figcaption class=\"wp-element-caption\">Dario Amodei, CEO of Anthropic. <\/figcaption><\/figure>\n\n\n\n<p>The team used Mythos Preview, Anthropic&#8217;s most powerful generative AI model built for super advanced coding, which has been given to only a handful of security and tech companies worldwide.<\/p>\n\n\n\n<p>Anthropic previously said that Mythos could easily uncover zero-day exploits in the systems of the world&#8217;s largest corporations that would be extremely difficult for humans to find.<\/p>\n\n\n\n<p>This immediately raised concerns over the power of the AI, especially if it fell into the hands of bad actors and they began <a href=\"https:\/\/mybroadband.co.za\/news\/security\/646112-the-threat-every-south-african-bank-should-be-worried-about.html\">targeting the financial sector of companies<\/a> worldwide.<\/p>\n\n\n\n<p>&#8220;Mythos Preview is powerful: once it has learned how to attack a class of problems, it generalises to nearly any problem in that class,&#8221; researchers at Calif said.<\/p>\n\n\n\n<p>They said that while Mythos can discover bugs quickly, it was human expertise that enabled the model to bypass MIE&#8217;s mitigation, which is among the best in the world.<\/p>\n\n\n\n<p>&#8220;Part of our motivation was to test what&#8217;s possible when the best models are paired with experts,&#8221; they explained.<\/p>\n\n\n\n<p>&#8220;Landing a kernel memory corruption exploit against the best protections in a week is noteworthy, and says something strong about this pairing.&#8221;<\/p>\n\n\n\n<p>The researchers did not say exactly how the exploit works, as they only recently disclosed it to Apple. They are waiting for the tech giant to release a fix for it.<\/p>\n\n\n\n<p>However, they said the fact that AI was able to help discover an exploit that hacked the world&#8217;s strongest consumer device security was a &#8220;glimpse of what is coming.&#8221;<\/p>\n\n\n\n<p>&#8220;We&#8217;re about to learn how the best mitigation technology on Earth holds up during the first AI bugmageddon.&#8221;<\/p>\n\n\n\n<p>&#8220;Small teams can suddenly do things that used to require entire organisations,&#8221; they said.<\/p>\n\n\n\n<p>&#8220;With the right strategy and people, even a tiny company can become mighty enough that the world&#8217;s largest companies start asking for its help.&#8221;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A small team of researchers used Anthropic&#8217;s Mythos to crack the most powerful security protection on macOS in a week.<\/p>\n","protected":false},"author":341213,"featured_media":647801,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[27887,84095,605,105267,15227,105269,105270,104674,105268],"class_list":["post-647799","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-ai","tag-anthropic","tag-apple","tag-calif","tag-cybersecurity","tag-hardware-exploit","tag-memory-tagging-extension","tag-mythos","tag-mythos-preview"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/647799"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/341213"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=647799"}],"version-history":[{"count":4,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/647799\/revisions"}],"predecessor-version":[{"id":647882,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/647799\/revisions\/647882"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/647801"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=647799"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=647799"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=647799"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}