Security researchers from Paradigm Shift have unveiled "usbliter8," an unpatchable BootROM exploit targeting Apple’s A12 and A13 chips. This critical vulnerability, made public on June 18, 2026, allows for arbitrary code execution within the SecureROM, the initial firmware loaded during device startup1. SecureROM is permanently embedded in the silicon at manufacturing, rendering it impossible for Apple to patch or mitigate through software updates. Consequently, all iPhones and iPads equipped with A12 and A13 processors will forever carry this hardware-level flaw, extending similar foundational security risks observed with the enduring "checkm8" vulnerability to a newer generation of Apple hardware. This deep-seated compromise means adversaries could potentially bypass critical security measures, establish persistent access, or even facilitate advanced jailbreaks that resist typical factory resets and subsequent software updates. The exposure's permanence implies that forensic analysis or persistent malicious firmware installation becomes significantly more feasible. Practitioners must recognize that devices reliant on these chipsets present an inherent, unresolvable security exposure throughout their operational lifespan.
usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 Devices
⚡ High Priority
Why This Matters
usbliter8 is an unpatchable BootROM exploit affecting A12/A13 devices, enabling code execution and extending checkm8-like risks to newer iPhones.
References
- SecurityAffairs. (2026, June 22). *usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 Devices*. SecurityAffairs. https://securityaffairs.com/193965/hacking/usbliter8-brings-unpatchable-bootrom-exploit-to-apple-a12-and-a13-devices.html
Original Source
SecurityAffairs
Read original →