Intel driven MacBook Pros have secondary ARM processor for Touch ID and security
techcrunch.com
techcrunch.com
[1]http://www.anandtech.com/show/6007/amd-2013-apus-to-include-...
...and don't forget Intel ME, which is not ARM but another processor in the system.
You might find that 'one arm chip' has many independent arm cpu cores carrying out different functions mostly completely hidden from end user behind firmware or rom
AMD does the same thing with an ARM core.
Practically all peripherals contain at least one programmable processor.
Remote management / IPMI also usually works with an entirely separate ARM computer that's integrated with the main computers graphics unit -- basically a shared framebuffer, just in hardware.
So cool.
The success of the SuperFX chip opened doors for future work, but nothing from the SuperFX was carried over - it was 16 bit, with a compact instruction encoding, a gate level design using ECAD.
A string of graphics hardware projects followed with a wide range of requirements, targeting 'interesting' (ie: cheapest) processes/standard cell libraries. These were all VHDL, and a flexible 32 bit embedded risc control processor emerged as a common theme.
The configurability and robustness in the face of sketchy ecad toolchains made it a very saleable thing in it's own right.
That is true for older designs. But didn't Intel switch from ARC to SPARC for their ME core not that long ago? Discussed here a while back:
SPARC would be a terrible mismatch for what Intel wants out of its ME
Ubiquitous com...fusion.
I had a hard drive that had a firmware fault, and I repaired it using a USB-Serial converter, taking the pcb off the drive to temporarily mask off a connector, and then issuing a couple of commands. http://superuser.com/questions/365999/how-do-i-recover-data-...
http://superuser.com/questions/365999/how-do-i-recover-data-...
Don't be surprised if an upgrade to your OS also reprograms that FPGA.
The secure enclave, hardware level security, all of the things that came up with the FBI request have become a self serving prophecy for them.
I applaud them for this and it looks like the MacBook Pro is going to be one of the most secure laptops around. Nothing is perfect of course.
Even though I applaud them for this I am still pissed about the headphone jack.
There's likely a way to make both of these things happen, to some degree. For instance, they could start with just locking Macs to the app store as a default that is changeable. (similar to how Android is locked down)
There are several good alternatives to the Mac Books now and I'll be moving to Linux for my development efforts the next time I buy a machine.
I would like to add that I don't see the Apple garbage can as a suitable hardware offering for serious editors.
> In the MacBook, the Secure Enclave is part of Apple’s new T1 processor, meaning it’s tied explicitly to the touch bar and Touch ID. It’s also, though, in charge of your webcam, a small but important difference.
> “In previous generations of Macbook the webcam light was software controlled—which meant that an attacker who compromised your OS could potentially activate the camera without turning on the light,” says Johns Hopkins University cryptography expert Matthew Green. “Adding a separate secure processor could make this much harder to do.”
https://www.wired.com/2016/10/macbook-pro-touch-id-secure-en...
There, solved. No full-powered ARM needed to control an indicator light.
OTOH, you can delay the LED and have it very noticeably on for a second or two when it's software-controlled.
It would make sense for the camera itself to drive the LED, instead of the computer/drivers doing it. I don't know if the camera ICs support this or not, though -- if not, it's not really something Apple can add if they're integrating a standard camera component. On the other hand, they control the T1 entirely, so they can easily do this with the new architecture.
The microphone, on the other hand, is kind of a bigger deal and still has that issue.
https://github.com/patjak/bcwc_pcie/wiki/Specification---Fea...
^^ did everyone already miss that the webcam was an entire SoC and not just a sensor hooked up to UVC?
The crazy part is you don't even know if it's still recording with the entire laptop off. Could it not, in theory, draw power off the main battery independent of the system being on? It certainly should be able to while in sleep mode.
And no, it's not connected to the main battery, because presumably it runs on 3.3V and maybe even some more exotic voltages for the image sensor. That needs to be regulated.
This would have provided a truly trusted mechanism for apps to communicate with the user. For instance, your bank could authenticate itself with you via the Touch Bar.. If the Touch Bar display is controlled from the host OS, then malware could pretend to be your bank, on the Touch Bar.
Ars claims that the rightmost 608 pixels ("Control Strip") of the Touch Bar are reserved for Apple, http://arstechnica.com/apple/2016/10/15-hours-with-the-13-ma...
That sounds similar in concept to Intel ME, another "secure" coprocessor that can do a lot of other things that the more paranoid are freaking out over...
It also makes me wonder if these MacBook Pros also have Intel ME.
They almost certainly do. Intel won't sell you a CPU without Intel ME.
That said, the options for developer laptops has shifted in favor of general x86 computers, including very light-weight machines and ones with mechanical keyboards. If I want to use Linux on it, my first choice wouldn't be a macbook. So, unless you require macos for work, you have have a more diverse variety of laptops to find one that suites you best.
Both Windows and macOS have pretty cleanly-separable userlands. Either OS can be set to a single-app full-screen "kiosk" mode, where you boot straight into a specified app. And that app can be, say, VMWare. Running Linux.
Computers used to have BIOSes: a chip that is loaded with firmware, and exposes a standard abstract-device protocol for each device class the computer supports. It's not a far leap to imagine a stripped-down copy of Windows or macOS, running on one core of the CPU, as a modern kind of "BIOS."
Yawn....
The IBM PC keyboard had its own Z-80 CPU way back then and likely every single PC of any sort since then has done this. And then there are the disk controller CPUs. Wasn't that introduced around 1984?
[edit: citation needed? http://classiccomputers.info/down/IBM/IBM_PC_5150/IBM_5150_T...]
Longer: Intel has continually sucked at mobile (likely due to innovator's dilemma and it's love-hate relationship with Microsoft which also sucks at mobile), and this may mean a stronger shift by Apple to integration with it's priorities (security, iOS/WatchOS friendliness, better battery life).
Besides, ARM is a fine architecture and it's popular these days, so why not?
[1] http://www.androidauthority.com/arms-secret-recipe-for-power...
To keep the cash flowing and replace banks.
I guess most people can see the problem and their potential as our next dictator.
It's more similar to the LOM and IPMI systems found on server computers rather than anything else.
I am a bit worried about the author. Is Matthew having a stroke?
The T1 also sends pixels to the Touch Bar, although the MacBook's main processor is what actually does the rendering for said pixels (which are sent).
how about more RAM, tho?
Citation needed.