
Apple’s newest iPhone 17 introduces a brand new layer of protection for crypto customers with hardware-level reminiscence protections that goal to stop widespread assault vectors used to hijack signing operations.
On the core of this improve is Reminiscence Integrity Enforcement (MIE), a function enabled by default that makes use of Enhanced Reminiscence Tagging Extension (EMTE)-style reminiscence tagging to detect and block harmful reminiscence entry varieties like out-of-bounds and use-after-free errors.
In response to cybersecurity agency Hacken, the brand new MIE system “meaningfully” reduces the chance of attackers utilizing memory-corruption zero-days to take management of signing code. “It’s an actual plus for crypto customers, particularly high-net-worth or frequent signers,” Hacken informed Cointelegraph.
These vulnerabilities reportedly account for almost 70% of software program flaws and are sometimes exploited in zero-day assaults concentrating on wallets and Passkey approvals.
Associated: Apple patches zero-click exploit threatening crypto customers
Apple boosts iPhone 17 defenses
Hacken defined that MIE actively detects and blocks harmful reminiscence entry patterns like out-of-bounds and use-after-free errors, stopping many widespread exploit chains. It’s always-on throughout each kernel and user-level processes, making spy ware growth tougher and costly.
“It raises the bar for attackers and makes focused spy ware/exploit growth a lot tougher and dearer,” Hacken mentioned. “That straight advantages pockets apps and Passkey flows that depend on in-process operations,” the blockchain safety agency added.
Nonetheless, MIE isn’t a silver bullet. It doesn’t shield towards phishing, social engineering, malicious internet content material, or compromised apps. Moreover, it doesn’t substitute safe {hardware} wallets or get rid of the necessity for consumer vigilance.
“Safety enhancements cut back total threat however don’t make gadgets invulnerable,” Hacken mentioned, asking customers to be vigilant and count on new vulnerabilities.
Associated: Apple eyes generative AI to hurry up customized chip design: Report
Apple crypto customers face safety threats
Apple’s crypto customers have been dealing with critical safety threats. Final month, it was revealed {that a} zero-click vulnerability permits attackers to compromise iPhones, iPads and Macs with out consumer interplay. Apple launched safety patches throughout a number of OS variations to repair the flaw.
Earlier this yr, Kaspersky warned that malicious software program growth kits utilized in apps on Google’s Play Retailer and Apple’s App Retailer are scanning customers’ photograph galleries for crypto pockets restoration phrases.
Final yr, Belief Pockets additionally warned Apple customers to disable iMessage because of “credible intel” of a high-risk zero-day exploit circulating on the Darkish Internet that would let hackers take management of iPhones with out consumer interplay.
Journal: Can Robinhood or Kraken’s tokenized shares ever be really decentralized?