#SecureEnclave

N-gated Hacker Newsngate
2025-11-23

🐱‍💻 Ah, the relentless pursuit of complicating simple tasks on macOS! Now you can secure your keys with an impenetrable fortress of confusion, courtesy of the Secure Enclave™. 🔒💡 Because who doesn’t love to spend all day refreshing tabs just to feel secure? 🙄
gist.github.com/arianvp/5f59f1

2025-11-17

"UltraLocked: Tính năng bảo mật tệp tin trên iOS sử dụng Secure Enclave, mã hóa end-to-end, tự hủy tệp tin và không lưu trữ trên đám mây. #UltraLocked #BảoMật #iOS #SecureEnclave #Encryption #ZeroKnowledge"

reddit.com/r/SideProject/comme

WIRED - The Latest in Technology, Science, Culture and Businesswired.com@web.brid.gy
2025-11-03

The Best iPhone Privacy and Security Settings to Change on Your Apple Device (2025)

fed.brid.gy/r/https://www.wire

apfeltalk :verified:apfeltalk@creators.social
2025-08-23

Der Trump-Intel-Deal ist offiziell: US-Regierung beteiligt sich mit 8,9 Milliarden Dollar an Intel
Die US-Regierung steht nun offiziell als Anteilseignerin von Intel fest. Ziel ist es, die Halbleiterproduktion im eigenen
apfeltalk.de/magazin/news/der-
#News #Tellerrand #Aktien #China #CHIPSAct #Halbleiter #Intel #Investition #SecureEnclave #Technologie #Trump #USRegierung #Wirtschaft

apfeltalk :verified:apfeltalk@creators.social
2025-07-29

Die verschiednen Apple-Sicherheitsstufen zum Schutz Deiner Daten
Die Sicherheit persönlicher Daten steht für viele Nutzer:innen im Zentrum digitaler Technologien. Apple fokussiert dies
apfeltalk.de/magazin/news/die-
#iPhone #Mac #News #AppSicherheit #Apple #BootROM #Datenschutz #FileVault #Gerteverwaltung #HomeKit #iCloud #iMessage #iPhone #KernelIntegrity #Netzwerk #SecureEnclave #Sicherheitskonzept #Verschlsselung

2025-05-14

Platform SSO for macOS is great for UX ánd for security.

Just unlock your Mac with Touch ID to get hardware-backed auth to the IdP; phishing resistant and with SSO across native Apps and web-based services.

support.apple.com/guide/deploy

#passwordless #secureenclave #apple

2025-01-15

Book Review: Red Team Blues

As a rule, book reviews are not a thing I usually do. So when I received an out-of-the-blue email from Cory Doctorow last week asking if I would review his latest book, Red Team Blues, it took a minute to overcome my initial skepticism. While I’m a fan of Cory’s work, this is a narrow/nerdy blog about cryptography, not a place where we spend much time on literature. Moreover, my only previous attempt to review a popular cryptography novel — a quick sketch of Dan Brown’s abysmal […]

whalers.ir/blog/book-review-re

apfeltalk :verified:apfeltalk@creators.social
2024-12-26

Apple plant angeblich neue Smart-Home Türklingel mit Face ID
Apple könnte bald einen weiteren Schritt in den Smart-Home-Markt wagen. Gerüchten zufolge arbeitet das Unternehmen an einer neuen Türklingel, die mit fortschrittlicher Gesichtser
apfeltalk.de/magazin/news/appl
#News #Zubehr #AppleTrklingel #Datenschutz #FaceID #HomeKit #HomeKitSecureVideo #Ring #SecureEnclave #Sicherheitskamera #SmartHome #Trffnung #WiFiChip

apfeltalk :verified:apfeltalk@creators.social
2024-11-20

Forscher: Neues iPhone-Sicherheitsfeature „Inactivity Reboot“ entschlüsselt
Apple hat mit iOS 18.1 ein neues Sicherheitsfeature eingeführt: den „Inactivity Reboot“. Dieses Feature sorgt dafür, dass sich iPhones automatisch neu starten, w
apfeltalk.de/magazin/news/fors
#News #Apple #BFUModus #Cellebrite #InactivityReboot #IOS181 #iPhoneSicherheit #JiskaClassen #Pegasus #ReverseEngineering #SecureEnclave

2024-11-19

Nowa funkcja bezpieczeństwa „Inactivity Reboot”

Badacz bezpieczeństwa Jiska Classen (Naehrdine) wykonał reverse engineering funkcji „Inactivity Reboot” wprowadzonej w iOS 18.1.

Apple nie ogłosiło tej funkcji publicznie, ale działa ona poprzez Secure Enclave Processor (SEP), który monitoruje czas od ostatniego odblokowania i automatycznie restartuje urządzenie po trzech dniach braku aktywności.

Działanie i zabezpieczenia:

  • SEP wysyła sygnał do systemu, aby wymusić restart i wprowadzić iPhone’a w tryb BFU (Before First Unlock), gdzie wszystkie pliki są zaszyfrowane do czasu podania kodu odblokowującego.
  • System zapobiega próbom obejścia restartu, np. wymuszając „kernel panic,” a dane analityczne są przesyłane do Apple w stanie „aks-inactivity.”
  • Funkcja skutecznie utrudnia włamania, chroniąc urządzenia przed narzędziami jak Cellebrite czy Pegasus.

Apple nie ujawnia szczegółów SEP, co dodatkowo utrudnia złamanie tej funkcji, nawet przy użyciu narzędzi typu jailbreak.

Funkcja ma chronić użytkowników przed wyciekiem danych, także w przypadku kradzieży. Więcej szczegółów na blogu Jiski Classen.

Z pełną analizą zapoznać możecie się tutaj.

#badacz #Bezpieczeństwo #InactivityReboot #iOS181 #SecureEnclave

Politics & Geopolitisgeopolits@venera.social
2024-09-16
apfeltalk :verified:apfeltalk@creators.social
2024-05-31

Apple plant umfassende KI-basierte Siri-Überarbeitung zur Steuerung einzelner App-Funktionen
Apple Inc. plant eine umfassende Überarbeitung seines virtuellen Assistenten Siri mit fortschrittlicher künstlicher Intelligenz. Diese Neue
apfeltalk.de/magazin/news/appl
#KI #News #AppFunktionen #Apple #Datenschutz #GoogleGemini #IOS18 #KI #OpenAI #SecureEnclave #Siri #Sprachsteuerung #WWDC2024

Todd A. Jacobs | Pragmatic Cybersecuritytodd_a_jacobs@infosec.exchange
2024-01-04

I'm a huge fan of #biometrics as part of secure #authentication and #authorization, but the dirty little secret no one is talking about (yet) is that the source of compromised #biometricdata can't be changed or replaced. If your system's #secureenclave or #HSM gives up the goods, you can't change your face, fingerprint, or retinal pattern. Such systems need additional safeguards to avoid the biometric version of a #replayattack, ensuring that re-enrollment results in new set of #quantumresistant cryptographic values.

venturebeat.com/security/the-p

2023-10-21

Apple mashing together Darwin / XNU and L4 into Darbat as part of creating SEPOS (sepOS?) and the secure enclave…

blackhat.com/docs/us-16/materi

…reminded me of a bit of obscure research from back when Digital Equipment Corporation (DEC) was still a thing, when OpenVMS (then known as VAX/VMS) was ported onto the Mach kernel:

fossies.org/linux/freevms/doc/

There are lots of reasons why that (never-released) port could have been useful, but neither VAX nor Mach really had the necessary performance back then. L4 does better.

#digitalequipmentcorporation #DEC #retrocomputing #History #history #OpenVMS #VAX #VMS #Apple #SEPOS #L4 #secureenclave #SEP #Mach

Adi'Vaala vas Miðgarðradibue@swiss-talk.net
2023-10-11
2023-07-24
2023-05-13
heise online (inoffiziell)heiseonline@squeet.me
2022-07-28
Das mobile Büro setzt sich immer mehr durch. iOS 16 und iPadOS 16 kommen daher mit Secure-Enclave-gestützter verbesserter Security.
Managed Device Attestation: Neue Sicherheitsfunktion für iPads und iPhones
2022-05-05

@margio

Ah la #SecureEnclave che è stata decriptata nel 2017 e bucata nel 2020?

9to5mac.com/2020/08/01/new-unp

Più o meno le stesse promesse offerte da Intel SGX le cui vulnerabilità sono ampiamente documentate en.wikipedia.org/wiki/Software (la mia preferita è la LVI)

Chi ha accesso fisico all'hardware può fare quel che vuole. E non è affatto difficile ottenerlo, perché il cellulare te lo porti dappertutto.

Leggi cosa riescono a farci i professionisti: journalofdemocracy.org/article

> a patto di avere con se un loro device

Esatto.

Nonostante tutte queste vulnerabilità, queste aziende investono su queste tecnologie proprio per poter avere tutte le uova di tutti nel proprio paniere.
Nemmeno una basilare differenziazione del rischio.

E se mai dovesse servire, loro possono inviarti un bell'aggiornamento di sicurezza personalizzato, prendere tutti i dati biometrici che tu ritieni al sicuro nella "Secure Enclave" e nascondere tutto prima del secondo riavvio.

Invece una password che sai solo tu e puoi cambiare quando ti pare non ti espone a questi rischi.

Ma io ne capisco poco eh... 😉

@prevenzione
@Songase975

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst