A security research team working on Apple’s M5-based Macs says Anthropic’s Mythos Preview helped them identify bugs and develop a working kernel memory corruption exploit quickly. The outlets report that the researchers bypass Apple’s memory-safety mitigation, Memory Integrity Enforcement (MIE), which is designed to make memory corruption exploits harder to execute. According to the team’s account, a key practical sequence involves running a command as a standard user and obtaining root (administrator) access. 9to5Mac and related coverage say the researchers have a detailed technical report but do not plan to publish it until Apple releases a fix for the vulnerability. The reports also say Mythos was used during the collaborative exploit development process to help recognize and work through known bug classes, and that pairing AI with human expertise was important for overcoming the challenges of bypassing a newer mitigation. TechRadar characterizes the effort as an example of how fast security problems can be investigated when AI tools are used alongside experts. Bruce Schneier’s summary similarly focuses on the team’s use of Mythos to find and exploit a kernel memory corruption vulnerability on Apple silicon.
Researchers describe using Anthropic Mythos to build a macOS kernel exploit in five days
A security research team working on Apple’s M5-based Macs says Anthropic’s Mythos Preview helped them identify bugs and develop a working kernel memory corruption exploit quickly. The outlets report t...
- A research team used Anthropic’s Mythos Preview during the process of finding and developing a working macOS kernel memory corruption exploit on Apple M5.
- The reported exploit is presented as moving from standard user access to root (administrator) access.
- The researchers say the work involves bypassing Apple’s Memory Integrity Enforcement (MIE), a hardware-assisted memory safety mitigation.
- The team states it has a detailed technical report but plans to hold publication until Apple ships a fix.
- Multiple outlets describe the effort as unusually fast, with researchers saying they built the exploit in about five days.
A group used Anthropic’s Mythos AI model to help find a kernel memory corruption vulnerability and exploit on Apple’s M5. News article.
3 months ago"The vulnerability is simple in practice," writes Tom's Hardware: "run a command as a standard user and gain root (administrator) access to the machine." And it was Mythos Preview that helped the security researchers at Palo Alto-based Calif bypass a five-year Apple security effort in just five days. The blog 9to5Mac reports: Last year, Apple introduced Memory Integrity Enforcement (MIE), a hardware-assisted memory safety system designed to make memory corruption exploits much harder to execute... [The researchers note it's built into Apple all models of the iPhone 17 and iPhone Air, and some MacBooks] They explain they have a 55-page technical report on the hack, but they won't release it until Apple ships a fix for the exploit. But they do note in broad terms that Anthropic's Mythos Preview model helped them identify the bugs and assisted them throughout the entire collaborative exploit development process. "Mythos Preview is powerful: once it has learned how to attack a class of problems, it generalizes to nearly any problem in that class. Mythos discovered the bugs quickly because they belong to known bug classes. But MIE is a new best-in-class mitigation, so autonomously bypassing it can be tricky. This is where human expertise comes in. Part of our motivation was to test what's possible when the best models are paired with experts. Landing a kernel memory corruption exploit against the best protections in a week is noteworthy, and says something strong about this pairing...." [I]n a time when even small teams, with the help of AI, can make discoveries such as this one, "we're about to learn how the best mitigation technology on Earth holds up during the first AI bugmageddon." Read more of this story at Slashdot.
3 months agoA product that took five years to build was broken into in five days, thanks to Mythos - and now Apple is working on a fix.
3 months agoThe team behind the first public macOS kernel memory corruption exploit on M5 silicon has shared fresh details on how Mythos Preview helped bypass a five-year Apple security effort in five days. more…
3 months agoMeta considered AI-led restructuring and large layoffs before abandoning later cuts
Meta considered an “AI native” restructuring that would reduce some teams by as much as 60%, shift much day-to-day work...
Nvidia forecasts AI-fueled revenue growth of about 70% into fiscal 2028
Nvidia, a major supplier of chips used in artificial intelligence systems, forecasts continued rapid revenue growth, ext...
Google releases Pokémon Sleep-themed Fitbit Air special edition in September
Google releases a special edition of its Fitbit Air smart wearable inspired by the Pokémon Sleep game. The device featur...