usbliter8: Unpatchable SecureROM Exploit for Apple A12 and A13
June 25, 2026
usbliter8 is a working exploit published by Paradigm Shift that achieves arbitrary code execution inside the SecureROM of Apple's A12 and A13 chips. It exploits a hardware flaw in the Synopsys DWC2 USB controller combined with Apple's USB DART bypass mode in SecureROM. The exploit requires physical access, DFU mode, and a dedicated RP2350-based microcontroller board, completing in under two seconds. Post-exploitation, it can demote the SoC's production mode or boot unsigned iBoot images.