Researchers from the Georgia Institute of Technology have discovered dangerous SLAP and FLOP vulnerabilities in Apple chips that could put iPhone, iPad, MacBook, and Mac owners at risk.
According to MacRumors, the attacks could be carried out through malicious web pages that bypass Apple's built-in browser protection mechanisms.
The vulnerabilities affect A- and M-series chips (starting with M2, A15, and later), meaning that the following are at risk:
SLAP attacks could target the Safari browser, while FLOP could threaten both Safari and Chrome. The possibility of hacking through other browsers, such as Firefox, has not yet been studied.
The vulnerabilities allow attackers to remotely access personal data:
SLAP was discovered back in May 2024, and FLOP in September 2024, but there are no confirmed cases of hackers using them yet.
Apple is already working on a fix and will release a security update soon.
More detailed information about the mechanism of the vulnerabilities is available on specialized cybersecurity resources.
month
week
day