New DRAM Scrambling Attack Compromises AMD CPU Security Features

New DRAM Scrambling Attack Compromises AMD CPU Security Features

First seen 14 Aug 2026, 16:28 UTC CybersecuritynewsGbhackersFeeds.4Sysops 78% similarity 61.5

Article Content

Browse articles
ThreatCluster

Security researcher Christopher Domas has unveiled a new attack technique called 'skitter-creek-bath-salts' that exploits vulnerabilities in AMD Family 15h and 16h processors. This attack manipulates the memory controller to disable address scrambling, allowing unauthorized access to critical areas such as the Platform Security Processor (PSP), System Management Mode (SMM), and microcode storage. The proof-of-concept project demonstrates how an attacker with kernel-level access can read and modify protected firmware memory. AMD has stated that the affected processors are no longer under regular security support. This vulnerability poses a significant risk to systems still using these older AMD CPUs, as it bypasses hardware-enforced memory isolation. The attack highlights the ongoing challenges in securing legacy hardware against modern threats.

Key Points: • The 'skitter-creek-bath-salts' attack targets AMD Family 15h and 16h processors. • It disables memory-address scrambling, exposing critical security features. • Affected processors are no longer under regular security support from AMD.

ThreatCluster AI How this analysis works

Timeline

2026-08-14
Domas releases proof-of-concept for DRAM scrambling attack
Christopher Domas published the 'skitter-creek-bath-salts' project, demonstrating the attack on AMD CPUs.
Gbhackers
2026-08-14
Cybersecurity news coverage of the attack
Multiple cybersecurity outlets reported on the attack's implications for AMD CPU security.
Cybersecuritynews
2026-08-14
AMD confirms affected processors lack security support
AMD acknowledged that the impacted Family 15h and 16h processors are no longer receiving regular security updates.
Feeds.4Sysops

Community

Browse all →

Tracked Entities in This Story