New “GoFetch” Vulnerability in Apple M-Series Chips Leaks Secret Encryption Keys

March 25, 2024 at 05:39AM A new security loophole in Apple M-series chips, called GoFetch, enables extraction of secret keys during cryptographic operations. Exploiting the Data Memory-Dependent Prefetcher (DMP), it targets constant-time cryptographic implementations to access sensitive data. This flaw can’t be fixed in existing Apple CPUs, posing a significant risk and requiring developers to … Read more

New Attack Shows Risks of Browsers Giving Websites Access to GPU 

March 18, 2024 at 09:15AM Researchers from Graz University of Technology in Austria and the University of Rennes in France discovered a new graphics processing unit (GPU) attack on popular browsers and graphics cards. By using the WebGPU API, they demonstrated an attack from within a web browser using JavaScript, showing potential risks and implications … Read more