yitit
Home
/
Computing
/
Report reveals vulnerabilities in Mac firmware affecting thousands of computers
Report reveals vulnerabilities in Mac firmware affecting thousands of computers-May 2024
May 1, 2025 1:30 PM

  Image used with permission by copyright holderA team of researchers at Duo Security revealed that there are some issues with Apple’s application of firmware updates, which has resulted in some users being left with out of date EFI firmware.

  The researchers analyzed 73,000 Mac devices and found that Apple’s security updating process was not working as the company intended. They found that a little over four percent of those computers were running with outdated Apple firmware, despite having received recent updates. Duo’s report didn’t give the exact cause of the problem, but simply noted that for “some reason” the EFI firmware was not being updated when the computers in question received security or OS updates.

  Recommended Videos

  Firmware is the software which runs underneath the OS and controls the computer when it is booting up. Security issues within firmware can be difficult to notice, which often makes it a target for more advanced hackers. Duo noted that average home users have little reason for concern, due to the fact that the complexity of firmware attacks usually relegates hackers to target enterprises and other valuable entities.

  Related

  Apple’s first OLED MacBooks are still years away, says report Apple could soon kill off the Mac Pro, new report claims Report: Apple’s 2024 MacBooks may face some serious shortages

  “If you’re a home user with a Mac that falls into one of the above categories as their personal computing device, then the sky isn’t falling for you, in our opinion,” Duo said. “Attacks against EFI have so far been part of the toolkit used by sophisticated adversaries who have specific high value targets in their sights.”

  Duo did caution that enterprise users should take some extra precautions. In addition to ensuring that all their Macs ran the latest version of Mac OS, the security company advised phasing out, or at least isolating, those computers which were not eligible for the most recent security updates.

  For its part, Apple has worked to improve its firmware and patch security vulnerabilities as they arise.

  “We appreciate Duo’s work on this industry-wide issue and noting Apple’s leading approach to this challenge,” an Apple spokesperson told Gizmodo. “Apple continues to work diligently in the area of firmware security and we’re always exploring ways to make our systems even more secure. In order to provide a safer and more secure experience in this area, macOS High Sierra automatically validates Mac firmware weekly.”

Comments
Welcome to yitit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Login to display more comments
Computing
Recent News
Copyright 2023-2025 - www.yitit.com All Rights Reserved