/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Researcher says that Macs with T2 chips are vulnerable to a variant of the checkm8 exploit, which could jailbreak certain iPhones and was unpatchable

Jailbreak involves combining last year's checkm8 exploit with the Blackbird vulnerability disclosed this August.

ZDNet Catalin Cimpanu

Context & Ripple Effects

In September 2019, a researcher released code for checkm8, a permanent unpatchable bootrom exploit covering iPhones from the 4S to the X, while noting it required physical device access and lost persistence after reboot. The new report extends that work to the Mac: by pairing checkm8 with the Blackbird vulnerability disclosed this August, the researcher says T2-equipped Macs can be attacked through the same class of flaw.

The stakes are set by Apple's own shipping cadence — the related coverage notes Apple debuted six Mac models with T2 chips after checkm8 became public, and a week later researchers demonstrated a modified USB-C cable used to hack the T2 chip. The same unpatchable-silicon pattern resurfaces in 2024 with an M-series flaw that leaks secret keys during cryptographic operations.

First-order effects

  • Owners of T2-equipped Macs face a vulnerability that, like the original checkm8, cannot be fixed in software — the exposure persists for the life of the hardware, though it requires physical access.
  • The jailbreak community gains a documented path to T2 Macs by chaining last year's checkm8 release with Blackbird, extending a technique previously confined to A5–A11 iPhones.

Second-order effects

  • Apple's only real mitigation is hardware: with bootrom code unpatchable, every T2 Mac already sold stays exposed, and the USB-C cable demo shows attackers turning the flaw into a physical tool rather than a lab technique.
  • Security buyers and enterprises evaluating Macs must weigh silicon-level flaws that outlive OS updates, pressuring purchasing decisions toward newer chip generations.

Third-order effects

  • If the pattern holds — T2 in 2020, M-series key extraction in 2024 — unpatchable hardware vulnerabilities become a structural feature of Apple's silicon, shifting security assurance from software patches to chip-generation refreshes.
  • Physical-access exploits of this class push the industry toward treating supply chain and device custody as the primary defense boundary, since firmware fixes arrive only with new hardware.

The trend: Apple's custom silicon keeps producing unpatchable, hardware-level vulnerabilities — from the checkm8 bootrom to the T2 to M-series key extraction — making chip generation, not software updates, the real security boundary.

Discussion

  • @e_kaspersky Eugene Kaspersky on x
    Hackers claim they can now jailbreak Apple's T2 security chip ⇒ https://www.zdnet.com/... ⇐ Jailbreak involves combining last year's checkm8 exploit with the Blackbird vulnerability disclosed this August via @campuscodi https://twitter.com/...
  • @campuscodi Catalin Cimpanu on x
    NEW: Hardware hackers claim they can now jailbreak devices running on Apple's T2 security chip (introduced in 2018) -Jailbreak involves combining two iOS jailbreaks (checkm8 and Pangu's blackbird) -Exploitation requires USB-C (physical) access https://www.zdnet.com/... https://tw…