logo

GoFetch security exploit can't be disabled on M1 and M2 Apple chips

ID: bfc5eed1-4f86-5757-b0da-7c09e80d8145

STIX ID: report--bfc5eed1-4f86-5757-b0da-7c09e80d8145

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-03-25

Date Updated: 2026-04-26

Author: Matthew Connatser

...
...

The report describes GoFetch, a hardware-level exploit that leverages data memory-dependent prefetchers (DMP) on Apple M-series and Intel Raptor Lake CPUs to leak sensitive data; researchers demonstrated extraction of 560 bits from an RSA-protected server. Mitigations are limited: DMP can be disabled on some CPUs (e.g., M3, Raptor Lake) but not on M1/M2, so temporary workarounds include running cryptographic operations on the DMP-free Icestorm efficiency cores or implementing software changes that carry performance penalties.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.