logo

Zimperium Analysis of checkm8

ID: c2bd5b11-7bc8-50d3-bf25-10d9b6d14a85

STIX ID: report--c2bd5b11-7bc8-50d3-bf25-10d9b6d14a85

Feed Name: Zimperium Blog

Threat Score
65/100

Date Published: 2019-10-03

Date Updated: 2026-05-01

...
...

This report describes the checkm8 bootrom exploit disclosed in September 2019 that permanently compromises the SecureROM on affected Apple devices (A5–A11), enabling arbitrary code execution at boot when physical access and DFU mode are available. The exploit is unpatchable for impacted devices, can enable jailbreak capabilities or sideloading but is not persistent across reboots without additional vulnerabilities, and the document outlines affected models, attacker requirements, potential abuse scenarios, and detection/mitigation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.