CPU level bug creates severe security issues in AMD chips - including Ryzen

ArsTechnica article about the issue.

AMD’s site listing the cpus that are affected.

1 Like

Interesting corner case. When the bug is on the silicon and not in firmware, there aren’t easy fixes.

The semi-good news in this, it’s pretty difficult to exploit as you need to have another way to get into privileged permissions first. The bad news is, once there is pretty much undetectable by current means and cleaning it requires hardware intervention (reprogramming some memory chips with extra tooling), to the point where it may be easier to replace all the memory or just throw out out the system and start over.

The thinking is that this one is worth for state actors to exploit, but not your average spammer trying to milk grandma.

There are so many exploits coming to light, including a resurgence of TPM failures.
Read with your cornflakes