DDRop: $159 attack breaks Intel TDX and AMD SEV-SNP memory encryption
Researchers from KU Leuven, ETH Zurich, Durham University and Google disclosed DDRop: a $159 interposer between the CPU and DDR5 memory silently drops write commands, so the processor reads stale values. The attack enables full control of protected VMs on Intel TDX and attestation forgery, and cannot be fixed with a software patch.
- Attack uses a $159 interposer between the CPU and DDR5 memory
- Dropped writes leave old values; the encryption engine sees nothing wrong
- On Intel TDX it enables VM takeover and attestation forgery
- Intel and AMD say physical-access attacks are outside their threat model
Read next
Security