Apple’s newest iPhone 17 introduces a brand new layer of protection for crypto customers with hardware-level reminiscence protections that goal to stop widespread assault vectors used to hijack signing operations.
On the core of this improve is Reminiscence Integrity Enforcement (MIE), a function enabled by default that makes use of Enhanced Reminiscence Tagging Extension (EMTE)-style reminiscence tagging to detect and block harmful reminiscence entry varieties like out-of-bounds and use-after-free errors.
In accordance with cybersecurity agency Hacken, the brand new MIE system “meaningfully” reduces the chance of attackers utilizing memory-corruption zero-days to take management of signing code. “It’s an actual plus for crypto customers, particularly high-net-worth or frequent signers,” Hacken informed Cointelegraph.
These vulnerabilities reportedly account for almost 70% of software program flaws and are sometimes exploited in zero-day attacks concentrating on wallets and Passkey approvals.
Associated: Apple patches zero-click exploit threatening crypto users
Apple boosts iPhone 17 defenses
Hacken defined that MIE actively detects and blocks harmful reminiscence entry patterns like out-of-bounds and use-after-free errors, stopping many widespread exploit chains. It’s always-on throughout each kernel and user-level processes, making spy ware growth tougher and costly.
“It raises the bar for attackers and makes focused spy ware/exploit growth a lot more durable and costlier,” Hacken stated. “That straight advantages pockets apps and Passkey flows that depend on in-process operations,” the blockchain safety agency added.
Nevertheless, MIE isn’t a silver bullet. It doesn’t defend towards phishing, social engineering, malicious net content material, or compromised apps. Moreover, it doesn’t substitute safe {hardware} wallets or remove the necessity for person vigilance.
“Safety enhancements cut back total threat however don’t make units invulnerable,” Hacken stated, asking customers to be vigilant and anticipate new vulnerabilities.
Associated: Apple eyes generative AI to speed up custom chip design: Report
Apple crypto customers face safety threats
Apple’s crypto customers have been going through severe safety threats. Final month, it was revealed {that a} zero-click vulnerability permits attackers to compromise iPhones, iPads and Macs with out person interplay. Apple released security patches across multiple OS versions to repair the flaw.
Earlier this yr, Kaspersky warned that malicious software development kits utilized in apps on Google’s Play Retailer and Apple’s App Retailer are scanning customers’ photograph galleries for crypto pockets restoration phrases.
Final yr, Belief Pockets additionally warned Apple users to disable iMessage resulting from “credible intel” of a high-risk zero-day exploit circulating on the Darkish Net that would let hackers take management of iPhones with out person interplay.
Journal: Can Robinhood or Kraken’s tokenized stocks ever be truly decentralized?