New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing

Summary

Researchers have identified a new hardware attack named DDRop that compromises the memory protection mechanisms in Intel TDX and AMD SEV-SNP confidential computing environments. The attack involves silently dropping memory writes, causing the processor to read outdated encrypted data as if it were current.

IFF Assessment

FOE

This attack undermines the security guarantees of confidential computing technologies, which are designed to protect data in use.

Defender Context

This DDRop attack highlights a new class of hardware vulnerabilities affecting confidential computing. Defenders need to be aware of the potential for side-channel attacks that bypass software-based security measures and consider the implications for cloud and sensitive data environments.

Read Full Story →