- AMD initial bulletin dated 2026-09-14.
What changed
AMD published a bulletin addressing research into physical attacks on DDR5 memory used with SEV-SNP. It says the technique requires both privileged software access and physical motherboard access. AMD considers the attack outside its published threat model and plans neither a CVE assignment nor mitigations.
Why it matters
The Hacker News reports that the DDRop researchers demonstrated how dropped memory writes can leave older encrypted values in use. The practical lesson is to distinguish protection against hostile software from protection against hardware tampering when assessing confidential computing.
What remains unproven
This is laboratory research, not evidence of a cloud breach. The researchers told The Hacker News they knew of no use outside laboratories. Results also differ between Intel and AMD systems; they do not establish identical compromise capabilities.
Read beyond this page.
Recorded source-check date: 15 Sep 2026. A link is not, by itself, evidence that every claim has been independently verified.
Changes & version history
Version 3 · 15 Sep 2026
Scheduled release of checksum-bound AI-assisted editorial review
Version 2 · 15 Sep 2026
Checksum-bound editorial review scheduled for release
Version 1 · 15 Sep 2026
Source-linked private review edition
