MilikMilik

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash
Interest|PC Enthusiasts

What AMD TSME Encryption Is and Why It Matters

AMD TSME encryption, short for Transparent Secure Memory Encryption, is a hardware-level feature on Ryzen processors that automatically encrypts data stored in system memory, aiming to protect users against physical attacks such as cold-boot data theft by generating a key inside the CPU and transparently securing RAM contents without requiring changes from applications or operating systems. TSME has long been part of AMD’s Ryzen memory protection story, especially under the “Memory Guard” branding on Ryzen PRO chips. On supported systems, enabling TSME in firmware means the CPU encrypts all main memory before the operating system loads, forming a baseline CPU security feature for people worried about someone extracting secrets by physically accessing a powered-off or sleeping PC. While this protection does not stop remote attacks, it closes an entire class of physical RAM snooping techniques that have traditionally been hard to defend against.

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash

The Silent Removal: How Users Discovered TSME Was Gone

The controversy began when AMD’s newer AGESA firmware stopped exposing TSME on some consumer Ryzen 9000 systems, even though the silicon still supported it. Linux hobbyist Ben Kilpatrick spotted the issue during an OS security audit on a Ryzen 7 9700X: his Host Security ID output changed the status of encrypted RAM from “Encrypted” to “Not supported”, despite TSME remaining enabled in the BIOS menus. Months of bug reports and back-and-forth with motherboard vendor MSI and AMD engineers eventually showed the problem sat in the firmware layer. According to PCMag, systems updated to AGESA 1.2.7.0 or newer firmware lost the practical ability to turn on TSME, leaving privacy-conscious users with fewer Ryzen memory protection options than they had before. Many saw this as a breach of trust, because a CPU security feature had been removed silently through a BIOS update.

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash

Backlash, AMD’s Reversal, and the July BIOS Update

Once the removal became public, community reaction focused less on the niche use of TSME and more on the principle of losing existing CPU security features. As Overclock3D put it, “taking away features that were previously available – that’s a problem.” In statements to Tom’s Hardware and PCMag, AMD acknowledged that “a BIOS option to enable Memory Guard was previously available but was removed in a recent update” on certain non-PRO Ryzen 9000-series desktop processors. The company now says it will “reinstate this option in an upcoming BIOS release in July” based on “valuable community feedback.” Practically, this means motherboard vendors must ship new BIOS update Ryzen firmware before owners can restore TSME support, and users will need to confirm at the operating-system level that encrypted memory is really active again rather than relying solely on a firmware toggle.

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash

TSME, Ryzen PRO, and the New Consumer Split

AMD’s statements draw a sharper line between consumer Ryzen parts and Ryzen PRO chips when it comes to AMD TSME encryption. The company describes Memory Guard, which includes TSME, as “a foundational security feature” for Ryzen PRO desktop and mobile processors and says it has “no plans to remove support” there. On consumer Ryzen 9000 CPUs, however, TSME is no longer exposed by default: the July BIOS updates will restore an option to enable it, rather than turning it on automatically. That creates a tiered security experience where PRO users get always-marketed, fully supported TSME, while mainstream buyers must seek out compatible firmware and manually switch the feature on in BIOS. For security-conscious home and small-business builders, Ryzen memory protection now depends as much on board vendor firmware policies as on the silicon itself.

AMD Reverses TSME Removal on Ryzen CPUs After User Backlash

Performance vs Security: Lessons for CPU Buyers

The TSME episode highlights a long-running tension in CPU design: performance optimization versus broad, always-on security. Memory encryption can add overhead, and chipmakers often keep features like TSME optional on consumer platforms to avoid benchmark penalties. However, AMD’s decision to remove a working security feature via firmware, and then restore it only after user pressure, shows how quietly tuning that balance can erode trust. For many desktop users, physical-memory attacks may seem unlikely, but for people who travel with PCs, maintain lab environments, or handle sensitive data, hardware-enforced CPU security features matter. Going forward, buyers who care about encrypted RAM should scrutinize BIOS update Ryzen notes, verify TSME status from the operating system, and consider whether Ryzen PRO or comparable platforms better match their threat model. Clearer disclosure from vendors could spare future customers from discovering missing protections only after an upgrade.

Milik earns a commission when you shop through our links, at no extra cost to you. This article was generated with AI from published sources and product data.

Related Products

You May Also Like

Comments
Say something...
No comments yet. Be the first to share your thoughts!