A cybersecurity researcher uncovers a set of 7 new hardware vulnerabilities that affect all desktops and laptops sold in the past 9 years with Thunderbolt, or Thunderbolt-compatible USB-C ports. The vulnerabilities can be exploited in 9 realistic evil-maid attack scenarios, primarily to steal data or read/write all of the system memory of a locked or sleeping computer even when drives are protected with full disk encryption. Thunderbolt-powered Apple MacBooks, except retina versions, sold since 2011 are also vulnerable to Thunderspy attack.
Source: https://thehackernews.com/2020/05/thunderbolt-vulnerabilities.html