๐จโ ๏ธ Apple CPUs hit by 2 new vulnerabilities: SLAP & FLOP
*Apple chips can be hacked to leak credit card info, inbox content from Gmail, Proton Mail, and sensitive login-protected data from target webpages.
*Attacks executed remotely through a web browser using a malicious webpage containing JavaScript or WebAssembly code. A victim would just need to visit a malicious website for the secrets to leak, bypassing browser sandboxing, ASLR, and traditional memory protections.
*Apple Devices affected: All devices dating back as far as 2021. Older devices with M1 or earlier chips not impacted by these particular vulnerabilities.
*Avoid untrusted websites, disable JavaScript when not needed. Use Browser extensions that block scripts like uBlock Origin.
*Apple stated it plans to address the issues. But said "Based on our analysis, we do not believe this issue poses an immediate risk to our users."
*Again for the 1000th time: IF YOU HOLD CRYPTO, DO NOT VIST UNKNOWN WEBSITES