Paradigm Shift Reveals Unpatchable Apple Boot ROM Flaw

Get the Tech newsletter
Daily tech — startups, AI labs, chips, the launches that shape the next decade. Free.
- Paradigm Shift published details of a vulnerability dubbed "usbliter8" on Friday, along with a proof-of-concept exploit requiring physical access to the target iPhone
- The flaw affects Apple A12 and A13 chips, found in iPhone XS, XR, and through the iPhone 11
- The vulnerability resides in the iPhone's Boot ROM, which is burned into the chip and therefore unpatchable through software updates
- Paradigm Shift wrote that "migrating to newer hardware remains the most effective mitigation," acknowledging no software fix exists
- Forensic device-access companies like Cellebrite and Magnet Forensics likely already possess similar Boot ROM bypass techniques used to crack seized iPhones
- Public iPhone jailbreaks have become rarer over the past decade, largely because researchers have little incentive to disclose flaws Apple would then patch
- The release gives government-affiliated researchers a starting point to chain usbliter8 with additional vulnerabilities for full iOS compromise
Why it matters: Owners of iPhone XS through iPhone 11 face a hardware-level flaw that no iOS update can fix—Paradigm Shift's own blog tells them to buy new hardware. For the offensive security market, the public proof-of-concept lowers the barrier for government contractors to build full iPhone compromises against older devices, while showing that even Apple's hardened Boot ROM layer remains reachable by well-resourced attackers.
Ask SkimNews



