New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
- ID
- 24319
- Status
- summarized
- Published
- 15 Sep 2026, 2:02 AM
- Fetched
- 15 Sep 2026, 4:45 AM
- Provider
- The Hacker News
- Category
- security
- Original URL
- https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html
- Source URL
- https://feeds.feedburner.com/TheHackersNews
Summary
- Score
- 6.0
- Created
- 15 Sep 2026, 4:48 AM
- Tags
- Audience
- developerssaas_foundersdatabase_learners
What happened
Researchers disclosed DDRop, a hardware attack using a sub-$200 interposer that breaks Intel TDX, Intel SGX, and AMD SEV-SNP confidential computing by silently dropping memory writes. The attack forces the processor to read old encrypted data as current, exploiting the lack of a 'freshness' guarantee in DDR5 memory. It requires an attacker to already control the server software and have brief physical access to insert the device.
Why it matters
If you rely on confidential computing to protect sensitive workloads in the cloud, this proves a determined attacker with physical access and software control can roll back memory state undetected. You should not treat confidential computing as an absolute guarantee against physical tampering, especially in co-location or bare-metal cloud scenarios.
Discussion angle
How this changes the threat model for startups relying on confidential computing for compliance or data privacy, and whether software-level freshness checks are needed.