惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
爱范儿
爱范儿
WordPress大学
WordPress大学
博客园 - 三生石上(FineUI控件)
J
Java Code Geeks
Vercel News
Vercel News
aimingoo的专栏
aimingoo的专栏
T
Tailwind CSS Blog
罗磊的独立博客
B
Blog
博客园_首页
A
About on SuperTechFans
有赞技术团队
有赞技术团队
V
V2EX
U
Unit 42
I
InfoQ
IT之家
IT之家
博客园 - 司徒正美
阮一峰的网络日志
阮一峰的网络日志
博客园 - 叶小钗
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Stack Overflow Blog
Stack Overflow Blog
The Cloudflare Blog
H
Help Net Security

Computerworld

Microsoft 365: A guide to the updates Windows 11 Insider Previews: What’s in the latest build? Windows 11: A guide to the updates Apple can't make chips fast enough, but that's only part of the story AI-led job cuts don’t always mean stronger ROI — Gartner Microsoft, Google push AI agent governance into enterprise IT mainstream Microsoft now has more than 20M paying Copilot users AI is more accurate than doctors in emergency diagnoses — study Start small, but start now: How to bring AI into your small business Apple is preparing to spend, but not necessarily on AI 10 quick productivity tips for Microsoft 365 mobile apps Relying on LLMs is nearly impossible when AI vendors keep changing things Apple breaks records, admits it can’t make Macs fast enough Spotlight report: Transforming software development with AI - Whitepaper Repository - 25 great uses for an old Android device AI chatbots need ‘deception mode’ Friendlier chatbots can be less reliable, study says Gartner sees untamed growth in agentic AI Apple reportedly abandons Vision Pro AI venture funding to shoot up this year as bubble looms Scaling up a tech startup in Europe is hard — 'EU Inc.' aims to help Apple will be behind on AI — until it isn’t EU lawmakers fail to agree on watered-down AI Act, talks pushed to May Android reminders, reinvented Who’s the better CEO, Apple’s Tim Cook or Microsoft’s Satya Nadella? AWS unveils trio of key AI strategy announcements SAS makes AI governance the centerpiece of its agent strategy Can Apple’s new CEO turn things around? Enterprises need to think beyond GPUs for agentic AI, analysts say Fleet hopes to be the MDM provider for the AI Era
The AI that cracked Apple Silicon is only the beginning
by Jonny Evans · 2026-05-22 · via Computerworld

opinion

May 22, 20265 mins

We are in a new era in which AI helps attackers find and exploit system flaws at a dangerously fast rate.

A security research team just used Claude Mythos to identify the first known exploit in Apple’s M5 chip. They needed physical access to the device to use it, the vulnerability has since been patched, and I don’t think it should be seen as a huge threat. But it is a stark warning that in this AI age, attackers can find and exploit system vulnerabilities at a dangerously fast rate.

While widely reported, the proof-of-concept exploit was of limited significance because it required direct physical access to the target device; what matters most is that it is a very real illustration of the new security reality.

AI doesn’t care whose side you’re on

AI boosts productivity for everyone, including attackers. In this case, the technology augmented the human security research team’s efforts, enabling them to identify a weakness in Apple’s security system. This won’t be the first time AI gets used to identify hard-to-find bugs and certainly won’t be the last.

This should be a real concern to any platform provider, as it means the most well-resourced attackers will be leaning deep into AI to help them find vulnerabilities. And as AI improves, the capacity it provides will inevitably become more dangerous.

That’s even before you consider that some attackers work for the kind of state and state-adjacent entities that can afford aircraft carriers. 

When nation-states come knocking

Access to such extensive resources means future AI-augmented attacks will have at their disposal the most powerful computational AI money can buy, which probably boils down to quantum computers.

The threat of quantum computers has been discussed since the 1990s. These systems are expected to be quite capable of breaking the encryption keys on which digital existence is built, and things will not be the same when they do. We don’t have long to wait until that threat becomes real. Google recently warned quantum computers will be able to hack into some, though not all, encrypted systems by 2029. 

Once Q-Day breaks, there will be no going back. And just as Mythos AI was able to help security researchers break into Apple’s core security today, quantum computer-augmented AI is likely to open even more dangerous security frontiers. The Global Risk Institute warns organizations “should take immediate action to address this significant cyber risk.”

What you can do while the industry catches up

What actions can we take now? We have to look to the tech firms to develop tech to protect us against tech:

  • Google, for example, is investing in post-quantum cryptography (PQC) digital signature protection and will put similar protections in place across its own authentication services in the next couple of years. 
  • Apple says it has also deployed quantum-secure cryptography across a wide range of protocols, “prioritizing applications involving sensitive user information where attackers could harvest encrypted communications at scale.” 
  • Cisco is deep into developing quantum-secure networks, working with network partners such as Orange Business to protect enterprise and public-sector data from future quantum threats.

These protections will help secure some of the most important elements of the computing experience, but they won’t cover everything, leaving a less certain threat environment in which many of the least-resourced software developers are exposed.

Legacy systems, particularly around critical infrastructure and key industries like health or finance, will be particularly exposed. You really, really don’t want key systems at your hospital or bank to rely on insecure and unsupported Windows 10 machines, for example. (You’d be better of with a MacBook Neo — truly, you would.)

Apple is not a badly resourced developer, which means it has no choice but to invest heavily in additional security to protect its platforms against both quantum and AI threats. We’ve also got to prepare for even more complex attacks down the road, as the two powerful technologies converge (to the detriment of security).

Gather ye while you can

We know nation-state actors are already hoovering up huge quantities of encrypted data, as they hope to be able to decrypt it once quantum capability matures. (There’s even a name for this, HNDL, which stands for Harvest Now, Decrypt Later.)

You don’t need to panic. These new breed attacks will be massively expensive to put together, which suggests they’ll be used against the same high-value targets Apple built Lockdown Mode to protect. What we saw happen with the NSO Group, which made the Pegasus attack you can now buy on the dark web, and other similar exploits that leaked over time, show that sophisticated attacks will inevitably seep into general use over time.

For now you can choose to use quantum ready messaging services such as iMessage and, while we wait for PQC-compliant password managers to ship, at least make sure to use highly secure passwords for key apps and services. And monitor the news for AI-augmented security exploits against Apple equipment. And as always, never leave your Mac unattended anywhere people you don’t know or trust can reach it.

You can follow me on social media! Join me on BlueSky,  LinkedIn, and Mastodon.

SUBSCRIBE TO OUR NEWSLETTER

From our editors straight to your inbox

Get started by entering your email address below.

Jonny Evans

Hello, and thanks for dropping in. I'm pleased to meet you. I'm Jonny Evans, and I've been writing (mainly about Apple) since 1999. These days I write my daily AppleHolic blog at Computerworld.com, where I explore Apple's growing identity in the enterprise. You can also keep up with my work at AppleMust, and follow me on BlueSky,Mastodon, and LinkedIn.

More from this author

Show me more