跳到正文
@berryxia· @berryxia · X·· 2026-05-15AI 评分57
AI 导读

Calif 的研究人员用 Anthropic 的 Mythos Preview 在 5 天内找到首个公开的 macOS 内核内存损坏漏洞利用,针对的是苹果为 M5 芯片打造的 Memory Integrity Enforcement(MIE)硬件内存安全系统。

正文

这个太特么“讽刺苹果”了!

Apple花了整整5年、砸下数十亿美元,专门为M5芯片打造了Memory Integrity Enforcement(MIE)硬件内存安全系统,目标是彻底干掉内存破坏类漏洞。

结果呢?

研究人员用Anthropic的Mythos Preview,只花了5天,就找到了第一个公开的macOS 内核内存损坏漏洞利用程序

他们已经亲自走进Apple Park,把55页完整技术报告递交给了苹果。

完整报告等苹果打完补丁后才会公开。

AI正在把安全研究的节奏彻底改写。

以前需要数年、数十亿硬件投入才能建立的防线,现在可能在几天内就被前沿模型找到突破口。

这也不是苹果工程不行,而是AI辅助漏洞发现的能力,已经把攻防双方的不对称性拉到了一个新量级。

完整技术报告和exploit演示在这里:

blog.calif.io/p/first-public…

PS:看着面孔也是华人面孔?

引用International Cyber Digest (@IntCyberDigest)@IntCyberDigest
❗️🚨 BREAKING: Researchers used Mythos Preview to find the first public macOS kernel memory corruption exploit on Apple's M5 silicon, they give a glimpse into Mythos say it’s really powerful. Apple spent five years and an estimated several billion dollars building Memory Integrity Enforcement (MIE), the hardware-assisted memory safety system built around ARM's MTE. It was the flagship security feature of the M5 and A19, designed specifically to kill the entire memory corruption bug class. Researchers from Calif built a working exploit in five days. According to Apple's own research, MIE disrupts every public exploit chain against modern iOS, including the recently leaked Coruna and Darksword kits. Calif walked into Apple Park this week and handed over the report in person. Full 55-page technical report drops after Apple patches the vulnerability.
在 X 查看被引用的帖子

来源:@berryxia · x.com