Skip to main content

The MacBook Pro’s tight security comes with an annoying compromise

Image used with permission by copyright holder

The launch of the 2018 MacBook Pro has been rife with controversy, with issues ranging from the performance to the keyboard. While we’re at it, let’s throw one more log on the fire, shall we?

The new MacBook Pros come with what Apple calls the T2 coprocessor — a chip first featured in the iMac Pro. Although its main reason for inclusion is Siri voice activation, it also has important implications on security and storage. Better security is great, but unfortunately, the T2 coprocessor isn’t without problem.

The return of the T2

The T2 coprocessor brings all sorts of security features to the MacBook Pros. In its press release, Apple says it has “support for secure boot” and “on-the-fly encrypted storage,” two features that first came when the T2 showed up in last year’s iMac Pro. These security features might not sound like a big deal, but they’ll have a much larger effect on users than activating Siri with your voice.

As soon as the Apple logo appears, the T2 is in control, and acts as Apple’s “root of trust.”

Apple’s never been all that forthcoming about the exact processes these chips control, but there are a few things we know the T2 does handle. That includes Boot-up, storage, and the Touch Bar/Touch ID. Not only are these processes the Intel CPU and third-party controllers no longer must handle, it keeps them protected in Apple’s closed system of stopgaps.

A great example is the boot-up process, which is now partially handled by the T2. As detailed in initial reports about the coprocessor in the iMac Pro, the T2 verifies everything about the system before it’s allowed to move forward. As soon as the Apple logo appears, the T2 is in control, and acts as Apple’s “root of trust” to ensure that everything checks out.

Encrypted storage is equally important. Because the functions of the conventional disk controller have been replaced by the T2, the coprocessor now has direct control over the storage in your MacBook Pro.

Apple T2 iMac Chip
Apple’s T2 coprocessor Image used with permission by copyright holder

That kind of access allows Apple to ensure every piece of data in the SSD is automatically protected and encrypted. That lets Apple to do things like secure your biometric data outside of the SSD. Right now, that’s just the TouchID sensor, but in the future that could include something like FaceID.

However, some compromises were made to bring these new security features to the MacBook Pro.

The T2’s Achilles’ heel

While the MacBook Pro’s new storage is fast and safe, the technology has introduced a new problem as well.

Time Machine Window
Image used with permission by copyright holder

In older models of the MacBook Pro, technicians had access to a data access recovery port on the logic board. Thanks to a special tool Apple developed, this port enabled the data of your SSD to be saved — even on a failed logic board. Because memory has been soldered on to the board of MacBooks since 2016, this was the only way to save the data if something went awry on your computer. It was as simple as bringing your dead laptop to a local Apple Store.

But now, thanks to a breakdown by iFixit, we know that data access recovery port is missing on new MacBook Pros. Apple may have another backup plan for recovering data, but none that it has shared so far.

Apple made it much harder to save your data from the system.

What does this have to do with security? Well, according to sources in contact with MacRumors, this data recovery port was “likely removed because 2018 MacBook Pro models feature Apple’s custom T2 chip, which provides hardware encryption for the SSD storage.”

In other words, to add this extra dose of security with its new processor, Apple’s made it much harder to save your data from the system. That’s great for security, but not great if your MacBook fails.

And, according to internal documents obtained by MacRumors, Apple technicians are advised to encourage users to back up their systems using Time Machine. So, while you can try to stay backed up or possibly send your whole system to a very expensive data recovery specialist, Apple’s ability to service its own products has dwindled. The reliability and service that set Apple’s products apart shrinks by the day.

As with many issues regarding Mac these days, it’s one step forward, two steps back.

Editors' Recommendations

Luke Larsen
Senior Editor, Computing
Luke Larsen is the Senior editor of computing, managing all content covering laptops, monitors, PC hardware, Macs, and more.
Another excellent laptop challenges the MacBook Pro and falls short
The keyboard and trackpad of the MacBook Pro.

The MacBook Pro 16 remains undefeated as the best 16-inch laptop you can buy. From the incredible battery life to the impressive performance, the M3 Max MacBook Pro has become an unstoppable force.

Still, plenty of competitors have come along to potentially challenge it, and when I came across the updated HP Spectre x360 16, I wondered if it might make a worthy rival. As impressive as it is, though, it still doesn't have what it takes to dethrone the MacBook Pro.
Specs and configurations

Read more
5 laptops you should buy instead of the MacBook Pro
The side of the open Dell XPS 14 on a white table.

There's no laptop quite like the MacBook Pro right now. No alternatives on the Windows side can match the power, efficiency, and battery life in a laptop of this size -- and that's not even mentioning the Pro's premium features and design.

There are, however, a few laptops that come close, while undercutting it significantly in price. So, if you're looking for a proper Windows alternative to the more powerful configurations of the MacBook Pro, or even just a cheaper laptop that can replicate some of what the MacBook Pro can do, here are a few solid options to consider before shelling out the cash on a MacBook Pro.
HP Envy 16

Read more
The MacBook Pro is a good enough gaming laptop for me
Halo running on a MacBook Pro.

I'm not a hardcore gamer. But like a lot of people, I like to dabble here and there. Looking at my limited Steam account, I find a handful of remotely current titles I've enjoyed lately, including Baldur's Gate 3 and Civilization VI.

When I fully converted to a MacBook Pro from Windows, I didn't expect to have even my limited gaming needs met. I figured it would just be something I'd lose in the transition. To my surprise, I've found myself quite enjoying the experience of gaming on my M3 Max MacBook Pro 16-inch. It won't be enough to satisfy gamers, but it was enough to get me excited for the future of gaming on the Mac.
Where the Metal meets the microchip

Read more