MilikMilik

AMD Restores TSME on Ryzen 9000 After Backlash

AMD Restores TSME on Ryzen 9000 After Backlash
Interest|PC Enthusiasts

TSME: The Silent Security Feature Users Refused to Lose

AMD TSME memory encryption, also known as Memory Guard, is a hardware-level Ryzen 9000 security feature that transparently encrypts system RAM, using a processor-generated key to protect against physical memory attacks and cold-boot data theft without requiring operating-system involvement, and it has been quietly available on many non-PRO Ryzen desktop processors through BIOS options until recent firmware changes removed it from view.

AMD did not spark outrage by changing clock speeds or core counts, but by taking away a security option many users had come to rely on. Recent AGESA firmware updates stripped the Memory Guard toggle from certain non-PRO Ryzen 9000 BIOS menus, leaving updated systems without exposed TSME capability. This matters less because everyone toggles it and more because nobody wants hardware encryption protection silently downgraded after purchase. When a CPU arrives with a feature, removing it later without a clear explanation feels like rewriting the ownership deal midstream. That is why the backlash was justified—and why AMD’s reversal now deserves a closer look.

AMD Restores TSME on Ryzen 9000 After Backlash

How a Linux Hobbyist Exposed AMD’s Quiet Removal

The turning point was not a press release but a routine security audit. In April, privacy-focused Linux user Ben Kilpatrick installed a new OS on a Ryzen 7 9700X system and discovered that his encrypted RAM flag had flipped from supported to unavailable, even though TSME remained enabled in the BIOS menu. On a test platform with a Ryzen 7 9700X, MSI MPG X870E EDGE TI WIFI, and AGESA 1.3.0.0, the Secure Memory Encryption hardware enable bit stubbornly stayed at 0, and kernel options like mem_encrypt=on did nothing because the capability was no longer reported.

From there, months of bug reports and vendor conversations uncovered a pattern: consumer Ryzen systems lost visible TSME support under AGESA 1.2.7.0, while Ryzen PRO parts kept it. One comparison on the same X870E motherboard showed tsme_status 0 for a Ryzen 9800X3D and tsme_status 1 for a PRO Ryzen 9945. That contrast made the change look less like a technical limitation and more like a deliberate product split—and it lit the fuse on community backlash once the findings reached the wider audience.

AMD Restores TSME on Ryzen 9000 After Backlash

Why TSME Matters for Real-World Security and Performance

Transparent Secure Memory Encryption is not a marketing gimmick; it is a practical layer of hardware encryption protection. TSME generates a single key at boot via the AMD Secure Processor and encrypts all system memory without relying on the operating system when the BIOS option is enabled. By making siphoned DRAM content unreadable, it raises the cost of cold-boot attacks and memory bus snooping and better protects user data from physical compromise. In effect, it turns opportunistic hardware theft and plug-in sniffing tools into less rewarding avenues for attackers.

The performance angle is more nuanced. TSME can add overhead in memory-heavy tasks, but many security-conscious owners willingly accept that tradeoff in exchange for protection below the OS. Removing the BIOS toggle on non-PRO chips pushes those users toward software-only encryption, which usually carries higher performance costs and narrower coverage. AMD’s own description of Memory Guard as a “foundational security feature” for Ryzen PRO—and its insistence that support there will not be removed—makes the initial consumer removal look even more like a misjudged decision about whose data deserves default hardware safeguards.

AMD Restores TSME on Ryzen 9000 After Backlash

The July Memory Guard BIOS Update: What Owners Should Do

Under pressure from vocal users, AMD now says it will reinstate the Memory Guard BIOS option for certain non-PRO Ryzen 9000 desktop processors through firmware updates arriving in July. This is not a vague promise; it explicitly acknowledges that the option "was previously available but was removed in a recent update" and will come back based on “valuable community feedback”. The fix, however, will not appear magically: motherboard vendors must ship new BIOS files, and owners need to install them before expecting Ryzen 9000 security feature behavior to change.

For ordinary users, the practical steps are straightforward. First, monitor your board vendor’s support page in July for a BIOS tagged with restored Memory Guard or updated AGESA. Second, update cautiously and then confirm at the operating-system level that encrypted RAM reports as supported again, rather than trusting a menu toggle alone. Linux users can repeat the Host Security ID or tsme_status checks that revealed the problem; Windows users face a visibility gap because there is no first-party TSME flag, so they may need third-party tools or firmware indicators. The key point is that the feature is only “back” once your system says it is active, not just because AMD issued a statement.

User Advocacy Changed AMD’s Roadmap—and Should Keep Doing So

AMD’s U-turn on TSME is a clear example of how persistent user advocacy can reshape hardware decisions. Once the quiet removal of Memory Guard hit the public eye, it triggered a backlash grounded in a simple principle: taking away previously available features is unacceptable, especially when those features concern security and data protection. AMD’s statement that it will reinstate the option in an upcoming July BIOS release "based on valuable community feedback" is more than PR language—it is an admission that the community drew a line and the company chose to step back over it.

This outcome does not answer every question; AMD still has not fully explained why non-PRO firmware dropped TSME exposure in the first place. But it does send a message: if owners are prepared to audit their systems, file detailed bug reports, and make noise when critical protections disappear, vendors will find it harder to quietly downgrade capabilities after launch. The July Memory Guard BIOS update will restore hardware encryption protection for many Ryzen 9000 users. The broader lesson is that security features should be treated as long-term commitments, not marketing toggles—and that communities must keep holding silicon makers to that standard.

Milik earns a commission when you shop through our links, at no extra cost to you. This article was generated with AI from published sources and product data.

Related Products

You May Also Like

Comments
Say something...
No comments yet. Be the first to share your thoughts!