Skip to main content
  1. Home
  2. Computing
  3. Apple
  4. News

Hacked in 30 seconds: Thunderbolt flaw in Mac computers can disclose passwords that fast

Add as a preferred source on Google

If you run any type of Thunderbolt device on your Mac, you’ll want to upgrade to MacOS 10.12.2 in short order. The latest update fixes a vulnerability in FileVault 2 — Apple’s second-generation full disk encryption platform — that allowed the disclosure of your system password by simply plugging in a $300 Thunderbolt device.

This device was able to gain access even when the Mac was asleep, researchers said. The hack works by forcing the computer into a reboot (ctrl+cmd+power), plugging in the special Thunderbolt device, and waiting about 30 seconds for the password to appear.

Recommended Videos

Security researcher Ulf Frisk says the issue is the result of two problems, one being the fact that Macs do not protect themselves from Direct Memory Access (DMA) attacks before the computer is started. The other is that the FileVault password is stored in clear text in memory and not automatically scrubbed once the disk is unlocked.

The password is put in multiple locations, and does apparently change location after reboots. However, it’s in a specific memory range making it fairly easy to scan for and eventually find. Frisk notified Apple of the vulnerability in August, and agreed to withhold it pending a fix, he wrote in a blog post.

“Anyone, including but not limited to your colleagues, the police, the evil maid, and the thief will have full access to your data as long as they can gain physical access – unless the Mac is completely shut down,” Frisk pointed out.

Mac OS 10.12.2 was released last week and fixed a variety of issues including a more reliable auto unlock, graphics, and System Integrity Protection (SIP) issues on some 2016 MacBook Pros, along with a host of other stability improvements.

The Thunderbolt vulnerability was only one of the many security updates in this release: if you’re interested you can learn more about those updates from Apple’s website.

Ed Oswald
For fifteen years, Ed has written about the latest and greatest in gadgets and technology trends. At Digital Trends, he's…
Google’s new desktop mode makes one thing clear: Samsung DeX was onto something
Android 16 finally brings a real desktop mode to Pixel phones, but Google’s long-awaited move mostly proves Samsung spent years getting the hard parts right
File, Webpage, Person

I’ve been waiting for Android to take desktop mode seriously for years. Back in 2019, I bought a OnePlus 7 Pro and wasted an embarrassing amount of time trying to brute-force its half-baked desktop mode into something useful.

The idea made perfect sense to me even then. Phones were already absurdly powerful, and the thought of carrying one real computer in my pocket felt less like science fiction and more like delayed common sense.

Read more
Anthropic launches Claude design to simplify visual creation with AI
Finally, AI that designs your slides so you don’t have to
Claude

Anthropic has introduced a new AI-powered design tool called Claude Design, aimed at helping users create visual content such as prototypes, presentations, and marketing assets through simple conversational inputs. The product, developed under Anthropic Labs, is currently available in research preview for paid Claude subscribers and is being rolled out gradually.

Claude Design is powered by the company’s latest vision model, Claude Opus 4.7, and is positioned as a tool that bridges the gap between technical design expertise and everyday creative needs.

Read more
AI triggered a RAMmageddon so bad that Apple looks like the sensible choice
Laptop prices got so stupid in 2026, that Apple turned into the value king.
Student using MacBook Neo in classroom.

I really didn't want to believe it, but here we are. Apple is now looking like the sensible laptop brand. Not the cool underdog. Not the affordable alternative. Apple, in 2026. The reason is not that the company suddenly became generous, but rather the rest of the competition has suddenly become so deranged that a MacBook lineup starting at $599 feels weirdly grounded.

Apple's MacBook Neo starts at $599, while Microsoft's own 13-inch Surface Laptop now starts at $1,199 after this month's price hikes. This isn't a small gap that you can ignore. Meanwhile, Apple's MacBook Air with M5 starts at $1,099 with 16GB of memory and 512GB of storage, which looks like one of the few premium laptops still priced by human beings.

Read more