ImportantSecurity & Privacy
Following user outcry, AMD reinstates memory encryption in consumer CPUs
AMD silently removed TSME (Transparent Secure Memory Encryption) from consumer Ryzen CPUs via firmware update without disclosure, then reversed course after significant user backlash highlighted the breach of trust and loss of a decade-long security feature. This incident underscores the importance for IT leaders to maintain visibility into hardware security capabilities and vendor transparency, as silent feature removals can create compliance and security gaps in enterprise environments. The situation demonstrates how vendor accountability has eroded in the industry, requiring CIOs to implement stronger vendor agreements and security validation protocols.

Consumer AMD CPUs will once again offer encryption protections against physical attacks after facing user backlash for silently removing the feature. As Ars reported last week, AMD stripped the protection, known as TSME, from consumer Ryzen processors. Short for Transparent Secure Memory Encryption, TSME encrypts the entire contents stored in memory, making the data useless to adversaries performing cold boot attacks and similar intrusions requiring physical access. Now you see it, now you don't, soon you'll see it again About a decade ago, AMD added TSME to its high-end CPUs. Over the next few years, AMD added the protection to lower-end processors, including the consumer version of its Ryzen chips, a CPU that costs less than the Pro version. Over the years, users of these lower-end chips have gotten used to the added security, although some security experts (and plenty of novices, too) note that consumer chips are far less likely to be targeted by physical attacks. Recently and without warning or notice, the lower-end line of AMD chips suddenly dropped the protection, and it did so in a way that was impossible to detect on Windows machines and required a fair amount of technical work when using Linux. AMD last week declined to explain or acknowledge the change.Read full article Comments