Skip to finding
important · Boot chain / Physical

DDRop lets a physical host attacker replace selected AMD SEV-SNP guest pages with stale plaintext.

Affects

AMD SEV-SNP, encrypted confidential virtual machines on DDR5 EPYC servers.

The interposer and privileged host control let an attacker reintroduce stale encrypted page contents; known plaintext can turn that into changes to victim data or code pages.

Detail and 4 sources

AMD lists affected processor families but plans no CVE or mitigation because it excludes physical memory-bus attacks from its threat model.

Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Saturday, September 19, 2026