Skip to main content

The Apple T2 chip in the latest MacBook Pros offer a deeper level of security

Image used with permission by copyright holder

Apple surprised customers with a sudden (but expected) hardware refresh of its 13- and 15-inch MacBook Pros without an on-stage introduction. The updated models include the T2 security chip first introduced in 2017’s iMac Pro providing a secure boot, encrypted storage, live “Hey Siri” commands, and more.

“The Apple T2 chip includes a Secure Enclave coprocessor that provides the foundation for secure boot and encrypted storage capabilities,” the company states. “It also consolidates many discrete controllers, including the system management controller, audio controller, and SSD controller, into one.”

Recommended Videos

A deep-dive into the chip shows that it includes a built-in hardware encryption engine that encrypts all data stored on the MacBook Pro’s SSD. This process uses 256-bit AES encryption and security keys unique to that specific MacBook Pro model. Owners gain access to the data through Apple’s FileVault platform that provides your own personal key.

Please enable Javascript to view this content

This method is great in that data cannot be accessed without your personal key. Moreover, if the SSD were to be removed, a hacker still won’t gain access to the stored data. But that also means you can’t move the SSD to another MacBook Pro should your current model suffer catastrophic failure. This is why you should frequently make backups using Time Machine.

Apple’s T2 chip also provides what Apple calls a “hardware root of trust,” meaning that the chip handles the startup process. It monitors each step and cryptographically signs an approval so that the startup can progress to the next stage. This process includes scanning the firmware, the system kernel, kernel extensions, and more. It will even scan the integrity of Boot Camp Windows-based volumes.

What this means for MacBook Pro owners is that their device isn’t susceptible to low-level attacks, as only verified, trusted software will launch during the startup process. But you can control the secure boot process by pressing “Command-R” to access the Startup Security Utility. With this tool, you can password-protect the firmware and enable/disable booting from external devices.

This tool also provides three settings — full, medium, and no — to control how strict the T2 chip will be during boot. For instance, the Full Security mode, set by default, requires a network connection to verify the operating system’s integrity, the latest version of MacOS, and “verifiable” software at boot. Meanwhile, the Medium Security setting doesn’t require the latest MacOS or an internet connection but still has the “verifiable software” requirement.

Other features provided by Apple’s T2 chip include an always-listening “Hey Siri,” a first for MacBooks. The chip also controls both Touch ID and the Touch Bar and includes an image signal coprocessor that works with FaceTime HD. According to Apple, this coprocessor provides “enhanced tone mapping, improved exposure control, and face-detection-based auto-exposure and auto white balance.”

Apple’s new 13-inch MacBook Pro with Touch Bar starts at $1,800 packing an eighth-generation Core i5 processor and four Thunderbolt 3 ports while the non-Touch Bar 13-inch MacBook Pros still ride on older seventh-generation processors. The new 15-inch MacBook Pros start at $2,400 packing eighth-generation six-core chips.

Kevin Parrish
Former Digital Trends Contributor
Kevin started taking PCs apart in the 90s when Quake was on the way and his PC lacked the required components. Since then…
Massive M4 MacBook Pro leaks have been ‘confirmed’ to be true
Russian YouTuber Romancev768 with what is claimed to be a real M4 MacBook Pro unit.

Over the last few weeks, we’ve seen a spate of leaks showing off what are alleged to be the upcoming M4 MacBook Pro. From photos of retail boxes to full-blown unboxing videos, the internet has been awash with the next MacBook Pro, despite the fact that Apple hasn’t even announced it yet.

Despite the constant media attention, there have been consistent doubts about the leaks -- for some, they just had a few too many question marks to be trusted. Yet Bloomberg reporter Mark Gurman has just dropped a bombshell by throwing his weight behind the leaks, writing in his latest Power On newsletter: “I can confirm that these are indeed Apple’s upcoming M4 MacBook Pros.” Gurman is one of the most accurate and consistent Apple leakers in the business and claims to have sources deep inside the company. So, when he says something is genuine, there’s a good chance he’s right.

Read more
These M4 MacBook Pro leaks are a goldmine of secret info
Russian YouTuber Romancev768 with what is claimed to be a real M4 MacBook Pro unit.

Apple's known for locking down its secrets under lock and key. But not these past few weeks.

The company hasn’t even announced the M4 MacBook Pro, yet we’ve apparently learned pretty much everything there is to know about the upcoming laptop thanks to a series of purported high-profile leaks and unboxing videos that have shown off the device from every angle. For a firm as security conscious as Apple, having the MacBook Pro spoiled in this way is close to catastrophic.

Read more
These M4 MacBook Pro leaks are getting insane, and I don’t know what to believe anymore
An open MacBook Pro on a table.

Apple has yet to announce an October Mac event, but leaks for the M4 MacBook Pro continue to circulate. A new tweet from Apple leaker ShrimpApplePro and a new Russian unboxing video have been spotted by Tom's Hardware, giving this possibly true and definitely unprecedented Apple leak more steam. The tweet claims a seller on a private Facebook group has 200 units of the M4 MacBook Pro for sale, adding: "This is probably the biggest warehouse leakage I've ever seen."

https://x.com/VNchocoTaco/status/1843133165302591861?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1843133165302591861%7Ctwgr%5E3d007d4bc86ddf38301ce5446103d04c8e8215f5%7Ctwcon%5Es1_&ref_url=https%3A%2F%2Fwww.tomshardware.com%2Flaptops%2Fapple-macbook-pro-m4-leakage-gets-serious-with-200-units-reportedly-up-for-sale-on-social-media

Read more