New "GoFetch" Vulnerability in Apple M-Series Chips Leaks Secret Encryption Keys
ID: 58446805-4a44-55b4-9c6b-01b8736d0b93
STIX ID: report--58446805-4a44-55b4-9c6b-01b8736d0b93
Feed Name: The Hacker News
**GoFetch** is a microarchitectural side-channel vulnerability in Apple M-series processors that abuses the data memory-dependent prefetcher (DMP) to cause secret-dependent memory accesses and enable extraction of cryptographic keys from otherwise constant-time implementations; it cannot be fully fixed in existing CPUs and requires library-level mitigations (M3 can mitigate via DIT). The report also mentions a separate GPU cache side-channel attack using WebGPU in browsers that can leak sensitive information without user interaction.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
