Feeds.4Sysops Security Flaws Found in TCG Opal2 Hardware-Encrypted SSDs
Article Content
Browse articles
- •38 SSDs tested revealed critical vulnerabilities in hardware encryption.
- •Flaws included predictable random numbers and flawed PSID reset tokens.
- •Many vulnerabilities remain unpatched, affecting millions of devices.
Researchers tested 38 hardware-encrypted SSDs compliant with the TCG Opal2 standard and discovered significant vulnerabilities. Issues included predictable random number generation, flawed PSID reset tokens, and a reused tweak value on some Lenovo OEM drives. These flaws compromise the integrity of the encryption, leading to potential data exposure. While Micron addressed one firmware issue, many other vulnerabilities remain unpatched and unsupported. Millions of laptops and workstations rely on these drives for encryption, raising concerns about widespread security risks. The findings highlight the need for verification rather than blind trust in hardware encryption features.
Ask AI about this cluster
Answers cite the sources they use
Updated 62d ago How this analysis works
Timeline
2026-07-21
Research findings published on SSD vulnerabilities
Researchers tested 38 TCG Opal2 compliant SSDs and found significant security flaws, impacting data encryption.
Feeds.4Sysops2026-07-21
Testing results shared by Milan Brož
Milan Brož and colleagues revealed vulnerabilities in hardware encryption of SSDs, affecting millions of laptops.
Feeds2.FeedburnerMore articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…