
AI-Powered Exploit Unveils macOS Kernel Privilege Escalation on Apple M5 in Five Days
Researchers demonstrated the first public macOS kernel memory-corruption exploit on Apple’s M5, achieving a local root shell on macOS 26.4.1 with Memory Integrity Enforcement active. The chain starts from an unprivileged user, uses only standard system calls, and targets two known-bug classes on bare-metal M5 hardware; the bugs were found April 25 and the exploit was ready by May 1. Anthropic’s Mythos Preview aided vulnerability identification and exploit development. Apple is expected to patch; this AI-assisted attack highlights how hardware mitigations like MIE increase exploitation costs but do not fully prevent kernel exploits, with memory corruption remaining the dominant attack class across platforms.


