privately disclosed to Apple on 5 December 2023; 5 months ago (2023-12-05),[1] public announcement on 20 March 2024; 53 days ago (2024-03-20)[1]
Discoverer
Boru Chen, Yingchen Wang, Pradyumna Shome, Christopher W. Fletcher, David Kohlbrenner, Riccardo Paccagnella, Daniel Genkin
Affected hardware
Apple silicon CPUs (M1, M2, M3 and A14)
Website
https://gofetch.fail/
GoFetch is a family of cryptographic attacks on recent Apple silicon CPUs that exploits the CPU's on-chip data memory-dependent prefetcher (DMP) to investigate the contents of memory.[2][1] CPUs affected include the M1, M2, M3 and A14 series system-on-a-chip processors.[1]
The DMP looks at cache memory content for possible pointer values, and prefetches the data at those locations into cache if it sees memory access patterns that suggest following those pointers would be useful.[3][4] The GoFetch attacks use those speculative cache fetches to undermine a number of different cryptographic algorithms by using memory access timings to exfiltrate data from those algorithms using timing attacks.
The authors of GoFetch state that they were unable to make their exploit work on the Intel Raptor Lake processor they tested due to its more limited DMP functionality.[1]
^ abcde"GoFetch: Breaking Constant-Time Cryptographic Implementations Using Data Memory-Dependent Prefetchers". gofetch.fail. Retrieved 2024-03-22.
^"Apple Silicon chip flaw can leak encryption keys, say researchers". AppleInsider. 2024-03-21. Retrieved 2024-03-22.
^"Augury: Using Data Memory-Dependent Prefetchers to Leak Data at Rest". www.prefetchers.info. 2022-05-02. Retrieved 2024-03-30.
^Vicarte, Jose Rodrigo Sanchez; Flanders, Michael; Paccagnella, Riccardo; Garrett-Grossman, Grant; Morrison, Adam; Fletcher, Christopher W.; Kohlbrenner, David (May 2022). Augury: Using Data Memory-Dependent Prefetchers to Leak Data at Rest. 2022 IEEE Symposium on Security and Privacy (SP). San Francisco, CA, USA: IEEE. pp. 1491–1505. doi:10.1109/SP46214.2022.9833570. ISBN 978-1-6654-1316-9.
sequence that demonstrated each step of the process. An exploit named GoFetch is able to extract cryptographic keys from M-series chip devices without...
microarchitectures. Apple silicon Apple M1 Comparison of Armv8-A processors GoFetch – security vulnerability within the Apple M2 first disclosed in 2024 "iPhone...
Fetch the Bolt Cutters is the fifth studio album by American singer-songwriter Fiona Apple. It was released on April 17, 2020, Apple's first release since...
16-bit memory channel and can access up to 4GiB of memory. Apple silicon GoFetch – security vulnerability within the Apple M2 first disclosed in 2024 "Apple...
memory channel and can access up to 4GiB of memory. Apple silicon Apple A15 GoFetch – security vulnerability within the Apple M2 first disclosed in 2024 Rosetta...
Fetch the Vet is a British stop motion children's television programme created by Gail Penston and Stephen Thraves. 26 episodes were produced by Cosgrove...
Fetch TV is an Australian IPTV provider that offers a subscription television service over a user's regular internet connection. It is majority owned...
ENGEO created an online service via the IBM partner program named GoFetchCode. GoFetchCode applies Watson's natural language processing and question-answering...
downloaded a logic bomb and worm planted by hackers claiming a "logic bomb" will go off if computer hacker Kevin Mitnick is not released from prison. February:...
to stop crimes. Blurring the line between advertising and content was GoFetch!, a 2005-06 list of newly released media products such as videogames, DVD...
all. 59 7 "GoFetch!" Matthieu Giner Davey Moore 11 January 2022 (2022-01-11) 159 When Dog invents a gadget that allows him to play fetch alone, Cheese...
Go I Know Not Whither and Fetch I Know Not What (Russian: Пойди туда, не знаю куда, принеси то, не знаю что, translit. Poydi tuda, ne znau kuda, prinesi...
Tanner Fetch (born February 16, 1992) is a former Canadian professional box lacrosse goaltender for Panther City Lacrosse Club of the National Lacrosse...
Pickers" – 3:51 "Fetch the Compass Kids" – 3:43 "Rallying the Dominoes" – 3:03 "Sing to the Singer" – 3:16 "The Wheel Made Man" – 2:35 "Singers Go First" – 2:58...