Live data from Hacker News

AMD silently removes memory encryption from consumer Ryzen CPUs

tomshardware.com

1–10 of 225 posts

Re: AMD silently removes memory encryption from consumer Ryzen CPUs

#4
If it can be silently removed was it a security feature?

Whilst I hate companies paying engineers to make things worse just to segment their market; I am not really seeing this as an important feature outside the data-center? If an evil-maid has hardware access they hack the USB and/or PCI not the RAM surely?

Re: AMD silently removes memory encryption from consumer Ryzen CPUs

#5
post #2

Any idea what's happening? This sounds _bad_.

> To be fair to AMD, there is no clear indication that the company ever publicly advertised TSME as a consumer Ryzen feature.

A feature that was possibly accidentally enabled on consumer chips is now being disabled. I would guess that the number of owners of consumer chips who also relied on them for encryption is exceedingly small.

The primary concern persists. The manufacturer has an exceptional amount of control of the state of your CPU most of which you cannot change and an unknown chunk of which you cannot even see. We are sort of playing in a fools paradise.

Re: AMD silently removes memory encryption from consumer Ryzen CPUs

#6
post #5
post #2

Any idea what's happening? This sounds _bad_.

> To be fair to AMD, there is no clear indication that the company ever publicly advertised TSME as a consumer Ryzen feature. A feature that was possibly accidentally enabled on consumer chips is now being disabled. I would guess that the number of owners of consumer chips who also relied on them for encryption is exceedingly small. The primary concern persists. The manufacturer has an exceptional amount of control o…

How can manufacturers simultaneously have exceptional control over flags and not enough control to know what flags are enabled on their shipping products?

They either have that control or they don't.

Re: AMD silently removes memory encryption from consumer Ryzen CPUs

#9
post #5

Earlier quoted context omitted.

> To be fair to AMD, there is no clear indication that the company ever publicly advertised TSME as a consumer Ryzen feature. A feature that was possibly accidentally enabled on consumer chips is now being disabled. I would guess that the number of owners of consumer chips who also relied on them for encryption is exceedingly small. The primary concern persists. The manufacturer has an exceptional amount of control o…

How can manufacturers simultaneously have exceptional control over flags and not enough control to know what flags are enabled on their shipping products? They either have that control or they don't.

They always had control. Awareness is a different thing. You could just as well ask "if you've written every line of code, why did you write that bug?".

Re: AMD silently removes memory encryption from consumer Ryzen CPUs

#10
For what it's worth, RAM encryption belongs to professional SKUs. It's the right business decision that should have been made from from the very beginning.

For most consumer users, RAM encryption primarily adds power consumption and heat generation while providing little practical benefit. They simply don't face many of the threat vectors and attack scenarios that certain industries and enterprise environments must contend with.

Post reply on HN