×
Desktops (Apple)

Unpatchable Vulnerability in Apple Chip Leaks Secret Encryption Keys (arstechnica.com) 85

A newly discovered vulnerability baked into Apple's M-series of chips allows attackers to extract secret keys from Macs when they perform widely used cryptographic operations, academic researchers have revealed in a paper published Thursday. From a report: The flaw -- a side channel allowing end-to-end key extractions when Apple chips run implementations of widely used cryptographic protocols -- can't be patched directly because it stems from the microarchitectural design of the silicon itself. Instead, it can only be mitigated by building defenses into third-party cryptographic software that could drastically degrade M-series performance when executing cryptographic operations, particularly on the earlier M1 and M2 generations. The vulnerability can be exploited when the targeted cryptographic operation and the malicious application with normal user system privileges run on the same CPU cluster.

The threat resides in the chips' data memory-dependent prefetcher, a hardware optimization that predicts the memory addresses of data that running code is likely to access in the near future. By loading the contents into the CPU cache before it's actually needed, the DMP, as the feature is abbreviated, reduces latency between the main memory and the CPU, a common bottleneck in modern computing. DMPs are a relatively new phenomenon found only in M-series chips and Intel's 13th-generation Raptor Lake microarchitecture, although older forms of prefetchers have been common for years. Security experts have long known that classical prefetchers open a side channel that malicious processes can probe to obtain secret key material from cryptographic operations. This vulnerability is the result of the prefetchers making predictions based on previous access patterns, which can create changes in state that attackers can exploit to leak information. In response, cryptographic engineers have devised constant-time programming, an approach that ensures that all operations take the same amount of time to complete, regardless of their operands. It does this by keeping code free of secret-dependent memory accesses or structures.

United States

US Sues Apple, Alleges Tech Giant Exploits Illegal Monopoly (wsj.com) 125

The Justice Department sued Apple on Thursday, alleging the tech giant blocked software developers and mobile gaming companies from offering better options on the iPhone, resulting in higher prices for consumers. WSJ: The government's antitrust complaint, filed in a New Jersey federal court, alleges Apple used its control of the iPhone to prevent competitors from offering innovative services such as digital wallets and limited the functionality of hardware products that compete with Apple's own devices. The suit also claims that Apple makes it difficult for users to switch to devices that don't use Apple's operating system, such as Android smartphones.

"Consumers should not have to pay higher prices because companies violate the antitrust laws," Attorney General Merrick Garland said in a statement. Apple said it plans to vigorously defend against the lawsuit. "This lawsuit threatens who we are and the principles that set Apple products apart in fiercely competitive markets," an Apple spokesman said in a statement. "If successful, it would hinder our ability to create the kind of technology people expect from Apple -- where hardware, software, and services intersect." The case against Apple is the last shoe to drop on the big four tech giants by U.S. antitrust officials.

Bug

macOS Sonoma 14.4 Bug 'Destroys Saved Versions In iCloud Drive' (macrumors.com) 32

The macOS Sonoma 14.4 update introduces a bug affecting iCloud Drive's versioning system, where users with "Optimize Mac Storage" enabled can lose all previous versions of a file removed from local storage. MacRumors reports: Versions are normally created automatically when users save files using apps that work with the version system in macOS. According to The Eclectic Light Company's Howard Oakley, users running macOS 14.4 that have "Optimize Mac Storage" enabled should be aware that they are at risk of losing all previously saved versions of a file if they opt to remove it from iCloud Drive local storage: "In previous versions of macOS, when a file is evicted from local storage in iCloud Drive [using the Remove Download option in the right-click contextual menu], all its saved versions have been preserved. Download that file again from iCloud Drive, and versions saved on that Mac (but not other Macs or devices) have remained fully accessible. Do that in 14.4, and all previous versions are now removed, and lost forever."

Oakley said his own tests confirmed that this behavior does not happen in macOS Sonoma 14.3 or macOS Ventura, so it is exclusive to macOS 14.4. For users who have already updated, he suggests either not saving files to iCloud Drive at all, or turning off Optimize Mac Storage. To perform the latter in System Settings, click your Apple ID, select iCloud, and then toggle off the switch next to "Optimize Mac Storage." You may need to perform this action twice -- reports suggest it can turn back on by itself. For a more exhaustive account of the problem, see Oakley's subsequent post.

EU

EU's Vestager Warns About Apple, Meta Fees, Disparaging Rival Products (reuters.com) 28

EU antitrust chief Margrethe Vestager on Tuesday warned Apple and Meta on their new fees for their services, saying that this may hinder users from enjoying the benefits of the Digital Markets Act which aims to give them more choices. From a report: Apple announced a slew of changes in January in a bid to comply with the landmark EU tech legislation which requires it to open up its closed eco-system to rivals.

A new fee structure includes a core technology fee of 50 euro cents per user account per year that major app developers will have to pay even if they do not use any of Apple's payment services, which has triggered criticism from rivals such as Fortnite creator Epic Games. Vestager said the new fees have attracted her attention. "There are things that we take a keen interest in, for instance, if the new Apple fee structure will de facto not make it in any way attractive to use the benefits of the DMA. That kind of thing is what we will be investigating," she told Reuters in an interview.
Further reading: Apple Working on Solution for App Store Fee That Could Bankrupt Viral Apps.
Businesses

Apple Working on Solution for App Store Fee That Could Bankrupt Viral Apps (macrumors.com) 91

Joe_Dragon shares a report: Since Apple announced plans for the 0.50 euro Core Technology Fee that apps distributed using the new EU App Store business terms must pay, there have been ongoing concerns about what that fee might mean for a developer that suddenly has a free app go viral. Apple's VP of regulatory law Kyle Andeers today met with developers during a workshop on Apple's Digital Markets Act compliance. iOS developer Riley Testut, best known for Game Boy Advance emulator GBA4iOS, asked what Apple would do if a young developer unwittingly racked up millions in fees.

Testut explained that when he was younger, that exact situation happened to him. Back in 2014 as an 18-year-old high school student, he released GBA4iOS outside of the App Store using an enterprise certificate. The app was unexpectedly downloaded more than 10 million times, and under Apple's new rules with Core Technology Fee, Testut said that would have cost $5 million euros, bankrupting his family. He asked whether Apple would actually collect that fee in a similar situation, charging the high price even though it could financially ruin a family. In response, Andeers said that Apple is working on figuring out a solution, but has not done so yet. He said Apple does not want to stifle innovation and wants to figure out how to keep young app makers and their parents from feeling scared to release an app.

Google

Apple Is in Talks To Let Google's Gemini Power iPhone Generative AI Features (bloomberg.com) 52

Apple is in talks to build Google's Gemini AI engine into the iPhone, Bloomberg News reported Monday, citing people familiar with the situation, setting the stage for a blockbuster agreement that would shake up the AI industry. From the report: The two companies are in active negotiations to let Apple license Gemini, Google's set of generative AI models, to power some new features coming to the iPhone software this year, said the people, who asked not to be identified because the deliberations are private. Apple also recently held discussions with OpenAI and has considered using its model, according to the people.
AI

Apple Acquires Startup DarwinAI As AI Efforts Ramp Up 16

According to Bloomberg, Apple has acquired Canada-based AI startup DarwinAI for an undisclosed sum. Macworld reports: Apple has reportedly folded the DarwinAI staff into its own AI team, including DarwinAI co-founder Alexander Wong, an AI researcher at the University of Waterloo who "has published over 600 refereed journal and conference papers, as well as patents, in various fields such as computational imaging, artificial intelligence, computer vision, and multimedia systems."

According to its LinkedIn profile, DarwinAI is "a rapidly growing visual quality inspection company providing manufacturers an end-to-end solution to improve product quality and increase production efficiency." In layman's terms, that means Apple is likely interested in DarwinAI to streamline its manufacturing to be more efficient. That's something that could save Apple a ton of money in annual costs.

Far more interesting to our consumer devices, however, is Bloomberg's report that DarwinAI's tech can be used to make AI models more efficient in general. Apple has been said to want any generative AI features to run on the device rather than the cloud, so models will need to be as small as possible and DarwinAI could definitely help there.
Last month, Apple CEO Tim Cook said the iPhone maker sees "incredible breakthrough potential for generative AI, which is why we're currently investing significantly in this area. We believe that will unlock transformative opportunities for users when it comes to productivity, problem solving and more."
Desktops (Apple)

Walmart Begins Selling the Mac For the First Time (9to5mac.com) 28

Walmart is teaming up with Apple to sell the Mac for the first time. From a report: In a press release today, the company said that it is now selling the base model M1 MacBook Air online and in select stores for $699. The move comes a week after Apple introduced the new M3 MacBook Air and stopped selling the M1 MacBook Air itself. While Walmart has historically sold Apple devices like the iPhone, iPad, and Apple Watch, it has never sold Macs directly. Instead, it's relied on third-party partners to sell the Mac through its online marketplace.
The Courts

Apple, Investors Reach $490 Million Settlement in Fraud Case (bloomberg.com) 5

Apple reached a $490 million settlement of a class-action lawsuit brought by a group of investors who accused Chief Executive Officer Tim Cook of misleading them in 2018 about the company's sales prospects. From a report: Cook made false statements about the company's business in China that caused Apple stock to trade at artificially inflated prices, the investors said in their complaint, which alleged violation of securities laws. Lawyers disclosed the proposed settlement in a request for judicial approval filed Friday in federal court in Oakland, California. The settlement comes as Apple continues to face headwinds in China, where iPhone sales fell by a surprising 24% over the first six weeks of this year, according to independent research released earlier this month. Attorneys for the investors described the settlement as the third-largest securities class-action recovery in the district's history.
Apple

Epic Says Apple Violated App Store Injunction, Seeks Contempt Order (reuters.com) 79

Epic Games, which makes the popular video game "Fortnite," on Wednesday accused Apple of violating an injunction governing its lucrative App Store, and asked a U.S. judge to hold Apple in contempt and end its "sham" compliance. From a report: A September 2021 injunction by U.S. District Judge Yvonne Gonzalez Rogers in Oakland, California, let developers provide links and buttons that direct consumers to other means to pay for digital content.

In a filing with the California court, Epic alleged that Apple is in "blatant violation" of that injunction, despite the Cupertino, California-based company's assurance in a Jan. 16 court notice that it had "fully complied." Epic said Apple has imposed new rules and a new 27% fee on developers for some purchases, which taken together make the links "commercially unusable." The Cary, North Carolina-based developer also said Apple continues to "categorically prohibit" buttons, and still forbids some apps from telling users they have other purchasing options.

Transportation

Apple Developed Chip Equivalent To Four M2 Ultras For Apple Car Project (9to5mac.com) 61

After 10 years and billions of dollars spent in development, Apple abruptly canceled its ambitious car project known as "Titan," shifting its focus and resources on the company's artificial intelligence division. In a recent Q&A on Monday, Bloomberg's Mark Gurman (paywalled) shared some new insights about the project and how involved the Apple Silicon team was before it was shut down. According to Gurman, Apple was planning to power the "AI brain" of the car with a custom Apple Silicon chip that would have the equivalent power of four M2 Ultra chips (the most powerful Apple has to date) combined. 9to5Mac reports: A single M2 Ultra chip consists of 134 billion transistors and features a 24-core CPU, a GPU with up to 76 cores, and a dedicated 32-core Neural Engine. M2 Ultra powers the current generation of Mac Studio and Mac Pro. Interestingly, Gurman says that the development of this new chip for the car was "nearly finished" before the project was discontinued. As some of the engineers working on the car project were reassigned to other teams at Apple, the company could reuse the engineering of this new chip for future projects.
EU

Apple To Allow iOS App Downloads Direct From Websites in the EU (theverge.com) 30

Apple is planning to make further changes in EU countries to allow some developers to distribute their iOS apps directly from a website. From a report: The new web distribution feature will be available with a software update "later this spring," according to Apple, providing developers with a key new way to distribute iOS apps in EU markets without the need for a separate app store -- as long as they're willing to adhere to Apple's strict rules.

While Apple is opening up iOS to more third-party apps here, these are still some key security protections around how apps are distributed via websites -- namely, you'll still have to work within the strict Apple app development ecosystem.

IOS

AirPods Pro To Gain 'Hearing Aid Mode' In iOS 18 (macrumors.com) 27

According to Bloomberg's Mark Gurman, AirPods Pro will gain a new "hearing aid mode" with the release of iOS 18 later this year. MacRumors reports: Writing in the subscriber edition of his regular Power On newsletter, Gurman claims that the "big news" for AirPods Pro in the near term will be support for a hearing aid-style function when iOS 18 drops in the fall. To be clear, this isn't the first time we have heard a potential hearing aid feature for AirPods Pro. The first rumor appeared in a 2021 Wall Street Journal report, but it was previously framed as a feature that would be exclusive to a next-generation model of AirPods Pro. However, Apple in September 2022 released the second-generation AirPods Pro, while the company more recently released a refreshed model with a USB-C port.

AirPods Pro already offer a Conversation Boost feature, which boosts the volume and clarity of people directly in front of the wearer, but Apple has not advertised the earbuds as a hearing aid device, because this would require FDA regulatory approval. As per the FDA, a hearing aid is defined as "any wearable device designed for, offered for the purpose of, or represented as aiding persons with or compensating for, impaired hearing." This definition encompasses both air-conduction and bone-conduction devices in a variety of styles (for example, behind-the-ear, in-the-canal, or body worn). [...] It is not yet clear whether Apple will need FDA clearance in order to make explicit or implicit claims about the rumored "hearing aid mode," which may not even adopt this exact name. If, for example, Apple subsequently suggests that AirPods Pro are for users with certain types or severity of hearing loss/impaired hearing, or for use as an alternative to a hearing aid, then they will require FDA regulatory approval to be marketed as such.

Television

Oscars 2024: Netflix Wins Just One Award and Apple Shut Out After Streamers Combine for 32 Nominations (variety.com) 48

Streamers narrowly avoided getting shut out at the 2024 Oscars: Netflix came away with just one trophy and Apple left empty-handed, after they garnered a total of 32 nominations. From a report: Netflix collected its one win for Wes Anderson's "The Wonderful Story of Henry Sugar," an adaptation of a Roald Dahl story, in the live action short film category. The 40-minute film, with a cast that includes Benedict Cumberbatch, Dev Patel, Ben Kingsley, and Ralph Fiennes, is the first Oscar for Anderson (who wasn't in attendance to receive the award). Heading into Sunday's 96th Academy Awards, Netflix led all studios and platforms with 19 nominations across 11 films, including seven for Bradley Cooper's "Maestro" -- which was shut out. Apple had picked up 13 nods, including 10 for Martin Scorsese's "Killers of the Flower Moon," which also drew a goose egg.

Since 2017, Netflix has now won 23 Oscars in all. But the best picture prize continues to elude the streamer as "Maestro" lost out to this year's awards powerhouse, "Oppenheimer." Nor has Netflix won in the lead actor or actress categories, coming up empty this year after four noms (Cooper and Carey Mulligan for "Maestro"; Colman Domingo for "Rustin"; and Annette Bening for "Nyad"). "Killers of the Flower Moon's" nominations included one for Scorsese in the best director category. His only Oscar to date came in 2007 for "The Departed" (for director). In 2020, his mafioso pic "The Irishman" for Netflix was shut out at the Oscars after receiving 10 nominations.

Programming

The Apple IIgs: On a Machine This Slow, You Had To Get Weird (bdmonkeys.net) 69

Long-time Slashdot reader garote writes: It's the year 1991. You're a teenage computer geek.

You've just upgraded to an Apple IIgs, your first "16-bit" computer. To relieve the crushing boredom of your High School coursework, you and your friends embark on the computer geek equivalent of forming a heavy metal band: Making your own video game.

You meet at the benches during lunch hour, and pass around crude plans scribbled on graph paper. You assign each other impressive titles like "Master Programmer", "Sound Designer", and "Area Data Input". You swap 3.5" disks like furtive secret agents, and stay up coding untl 3am. Your parents look at your owlish eyes — and your slipping grades — and ask if you're "on drugs".

If that sounds familiar, this essay may prove interesting. It uses the game my friends and I started — but didn't finish — in High School over 30 years ago, to explore the absurd programming contortions we did to make it playable on the Apple IIgs: The red-headed stepchild of the Apple II line; a machine that languished for six years without a hardware upgrade to avoid competing with the Macintosh.

Thanks to the recent release of the first cycle-accurate emulator for this machine, you can actually play the game in all its screen-tearing glory. You can also explore the source code which has survived for 30 years, and been adapted to build on modern hardware thanks to Merlin32 and CiderPress II.
"Nowadays, the content of the game itself is only good for an embarrassing laugh," according to the web page, "but I feel that the code we hammered out shows the unique challenges of a bygone era, which should be remembered..."
Apple

Apple Reinstates Epic Developer Account After Public Backlash for Retaliation (epicgames.com) 41

Epic Games, in a blog post: Apple has told us and committed to the European Commission that they will reinstate our developer account. This sends a strong signal to developers that the European Commission will act swiftly to enforce the Digital Markets Act and hold gatekeepers accountable. We are moving forward as planned to launch the Epic Games Store and bring Fortnite back to iOS in Europe. Epic CEO Tim Sweeney adds: The DMA went through its first major challenge with Apple banning Epic Games Sweden from competing with the App Store, and the DMA just had its first major victory. Following a swift inquiry by the European Commission, Apple notified the Commission and Epic that it would relent and restore our access to bring back Fortnite and launch Epic Games Store in Europe under the DMA law.
Operating Systems

Apple Releases visionOS 1.1 With Improvements To Persona, EyeSight, Virtual Keyboard and More (macrumors.com) 26

An anonymous reader quotes a report from MacRumors: Apple today released visionOS 1.1, marking the first major update to the visionOS operating system that was launched alongside the Vision Pro in February. visionOS updates can be installed by going to the Settings app on the Vision Pro, selecting the General section, and choosing Software Update. The Vision Pro headset will need to be removed to install new software, with a progress bar available on the front EyeSight display.

Apple is making several improvements to the Vision Pro with the visionOS update. Mobile Device Management is available for businesses, and Persona and EyeSight look better than before. The virtual keyboard has been updated to address bugs and make cursor positioning more accurate, and there are also bug fixes for the Mac Virtual Display.
Here's a summary of visionOS 1.1 from the release notes: "This update introduces MDM features that enable deployment, device configuration, and management for enterprises. This release also includes Persona improvements, the ability to delete system apps from the Home View, as well as other features, bug fixes, and security updates for your Apple Vision Pro."
Iphone

Apple Will Cut Off Third-Party App Store Updates If Your iPhone Leaves the EU For a Month (theverge.com) 88

In an updated support page, Apple says it won't let your iPhone update software installed by third-party app stores if you leave the European Union for more than 30 days. The Verge reports: Shortly after the EU's Digital Markets Act (DMA) went into effect on Wednesday, users noticed an Apple support page stating users would "lose access to some features" when leaving the EU "for short-term travel." But now, Apple has made this policy more specific by carving out a 30-day grace period, which could be inconvenient for frequent travelers. This doesn't change your ability to use alternative app marketplaces, however, as Apple says you can still use third-party stores to manage apps you've already installed. Further reading: Apple is Working To Make It Easier To Switch From iPhone To Android Because of the EU
EU

EU Looking Into Apple's Decision To Kill Epic Games' Developer Account (techcrunch.com) 64

The European Union has confirmed it's looking into Apple's decision to close Epic Games' developer account -- citing three separate regulations that may apply. From a report: Yesterday the Fortnite maker revealed Apple had terminated the account, apparently reversing a decision to approve the developer account last month. Epic had planned to launch its own app store, the Epic Games Stores, on iOS in Europe, as well as Fortnight on Apple's platform. And it accused Apple of breaching the bloc's Digital Markets Act (DMA) by killing its developer account.

Responding to the development, a European Commission spokesperson told TechCrunch it has "requested further explanations on this from Apple under the DMA." The pan-EU regulation applies on Apple from midnight Brussels' time today. The spokesperson also said the EU is evaluating whether Apple's actions raise compliance "doubts" with regard to two other regulations -- the Digital Services Act (DSA) and the platform-to-business regulation (P2B) -- given what they described as "the links between the developer program membership and the App Store as designated VLOP" (very large online platform).

EU

Apple is Working To Make It Easier To Switch From iPhone To Android Because of the EU (theverge.com) 40

Apple is preparing to allow EU-based iPhone users to uninstall its first-party Safari browser by the end of 2024 and is working on a more "user-friendly" way of transferring data "from an iPhone to a non-Apple phone" by fall 2025. From a report: That's according to a new compliance document published by the company, which outlines all the ways it's complying with the European Union's new Digital Markets Act that comes into force this week.

Other user-facing initiatives detailed in Apple's document include a "browser switching solution" to transfer data between browsers on the same device, which it plans to make available by late 2024 or early 2025. It'll also be possible to change the default navigation app on iOS by March 2025 in the EU. The document doesn't explicitly state whether any of these features will be available globally or whether they'll be exclusive to users in the EU. But many of the company's previously announced plans to comply with the DMA -- including the ability to run browser engines other than WebKit and install third-party app stores -- are only available in the bloc.

Slashdot Top Deals