Your Mac’s connection to Harry Potter
The next time you wish to hack into a Mac, it may help to grab your wand and book of spells. At the NoSuchCon security conference this week, security architect Alex Ionescu presented a talk where he revealed that special undocumented code on a Mac’s SMC (system management controller) can be invoked by entering a secret spell used in J.K. Rowling’s Harry Potter series.
That spell is “SpecialisRevelio,” the words used by a wizard to “reveal charms and hexes that have been cast onto a target” or “reveal the ingredients of a potion.” In an Ars Technica post about the secret spell, blogger Dan Goodin notes that “While most details are far too technical for this article, the gist of the research is that the SMC is a chip that very few people can read but just about anyone with rudimentary technical skills can ‘flash’ update.”
One of the possible attacks that Ionescu pointed out is infecting the SMC with code to pull out the FileVault key used to encrypt a Mac drive, although to implement this an attacker would have to know details of the Mac like the model, year and screen size in advance.
Much more likely attacks provided by the spell backdoor include marking targets. The SMC could be programmed to emit audible or visual alerts through the fans or LED displays, which could point out a specific Mac to an attacker. A Mac could even be programmed to turn off at a certain time and refuse to boot again.
There’s good news in all of this scary talk: to reflash the firmware an attacker has to have physical access to the Mac. Ionescu also reported that many of the SMC security holes were plugged in OS X Mountain Lion. A full copy of the presentation can be downloaded here (PDF file).
You may also like to check out:
- Download iOS 7.0.3
- How To Downgrade iOS 7 To iOS 6.1.3 / 6.1.4
- How To Jailbreak iOS 6.1.3 On iPhone 4, iPod touch 4 and iPhone 3GS Using Redsn0w
- How To Jailbreak iOS 6.0 to 6.1.2 Untethered On iPhone 4,3GS, iPod touch 4 Using Sn0wbreeze 2.9.11
- How To Jailbreak iOS 6.1.2 Untethered On iPhone 5,4S, iPad, iPod touch Using Evasi0n 1.5
- How To Jailbreak iOS 6 With Official Cydia On iPhone 4, iPhone 3GS And iPod touch 4G Using Redsn0w 0.9.15b1
- How To Downgrade iPhone 4, iPhone 3GS, iPod touch 4G From iOS 6 To 5.1.1 Using Redsn0w