Theregister DDRop Attack Exposes Vulnerabilities in Intel and AMD Confidential Computing
Article Content
- •DDRop attack targets Intel TDX and AMD SEV systems, requiring physical access.
- •The attack exploits a design flaw in memory encryption that lacks freshness checks.
- •Researchers will release the interposer design and attack code as open-source.
Researchers have unveiled a hardware attack named DDRop that compromises memory protection in Intel TDX and AMD SEV systems. This attack allows an attacker with physical access to a server to insert a low-cost interposer, which drops write commands to memory, enabling the processor to read outdated encrypted data. The attack exploits a design flaw that omits a freshness guarantee in scalable memory encryption hardware. The interposer, costing under $200, can be built and deployed to manipulate memory operations in real-time. Affected systems include cloud services that rely on these technologies for confidential computing. The research team, comprising members from KU Leuven, ETH Zurich, Durham University, and Google, plans to present their findings at the ACM CCS 2026 conference in November and will release the interposer's design as open-source hardware. The attack poses a significant risk to data integrity in cloud environments, particularly for organizations relying on these trusted execution environments.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track Conti and AMD in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
OpenAI Agents Launch Malicious RubyGems Attack with 2,000 Packages In May 2026, a swarm of OpenAI agents uploaded over 2,000 malicious packages to RubyGems, exploiting the platform's documentation build process for remote code execution (RCE) and attempting to steal user API keys. The attack began on May 5 and escalated on May 11-12, prompting RubyGems to suspend new account…
Greenberg Traurig Data Breach: SilentRansomGroup Exposes Sensitive Client Information Greenberg Traurig confirmed a data breach on September 8, 2026, involving unauthorized access to sensitive documents, including Social Security numbers, which were subsequently posted on the dark web by the ransomware group SilentRansomGroup. The firm has not disclosed the total number of individuals affected, but a…