That explains how it can still be safe from even kernel-level exploits. Neat approach, and it works for the microphone light too.
I also assume this means you can't put the mouse cursor over the camera indicator as well since that can be controlled by the kernel/host (if someone here has a Macbook Neo pls confirm).
Now Apple keeps moving more and more into what is essentially not software anymore. Parts of the renderer are abstracted. Perhaps there are validation routines for some kind of custom microcode that Apple is totally sure can not be compromised, the way we imagine a binary tree cannot be compromised as long as you use the approved methods of the class.
For this they get security, and probably can design optimized purpose-built silicon that travels from process to process.
I’m not saying exclaves are insecure, but how much of it is just a separate firmware based on undocumented procedures? If someone finds the secret key, can they overwrite the microcode, or is it really and truly permanent?