Episode #875 Quiz
The PACMAN Attack
Date: 2022-06-14 | Length: 1.75 hrs | Episode page at twit.tv
About this episode
PACMAN exploits speculative execution against ARM Pointer Authentication on Apple M1 chips. By leaking PAC verification results through microarchitectural side channels, an attacker can brute-force 11-31-bit PACs without crashes, even from user space, and forge kernel pointers. Mitigation depends on software fixes and stronger pointer-space budgeting.
Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.