AMD to bring back “TSME” memory encryption on Ryzen 9000 non-PRO CPUs after backlash

AMD to restore non-PRO Ryzen 9000 memory encryption in July

AMD will reinstate memory encryption support on certain non-PRO Ryzen 9000 desktop processors through a BIOS update planned for July. The change follows criticism from users after the feature was removed through recent firmware.

The feature is called Transparent Secure Memory Encryption , or TSME . AMD also markets it as Memory Guard on Ryzen PRO processors. It encrypts system memory with a key generated by the AMD Secure Processor during boot. When enabled in BIOS, it can work without operating system changes.

This protection is mainly aimed at physical attacks. One example is a cold boot attack, where data may remain in DRAM briefly after shutdown and can be recovered by someone with direct access to the system. This is not a common risk for most desktop users, but it is still a hardware security option that some users deliberately enable.

TSME dissappears from Ryzen 9000 platforms

The removal was noticed after a Ryzen 7 9700X owner found that encrypted RAM was no longer active on his system. The BIOS still exposed a TSME toggle, but Linux reported that the SME flag was missing and encrypted RAM was no longer supported. The report pointed to AGESA firmware as the likely reason, with newer firmware no longer enabling the feature on some non-PRO Ryzen systems.

Source: Github

AMD confirm TSME flag removal and its return

AMD has now confirmed that a BIOS option to enable Memory Guard was previously available on certain non-PRO Ryzen 9000 desktop processors. The company says this option was removed in a recent update. After what AMD calls “valuable community feedback,” the option will return in an upcoming BIOS release in July.

Regarding certain non-PRO Ryzen 9000-series desktop processors, a BIOS option to enable Memory Guard was previously available but was removed in a recent update. Based on valuable community feedback, we will reinstate this option in an upcoming BIOS release in July.

— AMD

Ryzen PRO processors are not affected by this reversal. AMD says Memory Guard remains a hardware-based memory encryption feature for Ryzen PRO desktop and mobile processors where supported in silicon. The company also says it has no plans to remove support from the Ryzen PRO lineup.

Source: Tom’s Hardware , Github , Ars Technica