MilikMilik

AMD Removed Then Restored Ryzen Memory Encryption: The Backstory

AMD Removed Then Restored Ryzen Memory Encryption: The Backstory
Interest|PC Enthusiasts

What AMD TSME Encryption Is and How It Vanished

AMD TSME encryption, or Transparent Secure Memory Encryption, is a firmware-controlled feature on Ryzen processors that encrypts all system RAM to protect against physical memory attacks such as cold-boot data theft and DRAM bus snooping, without needing operating system support or user interaction once enabled in the BIOS. For years, Ryzen memory encryption through TSME worked quietly on mainstream consumer chips, inherited from AMD’s higher-end lines. That changed with newer BIOS updates using AGESA 1.2.7.0, when consumer Ryzen 9000 processors began reporting “encrypted RAM: not supported” despite TSME being set to AUTO or ENABLED. The removal went undocumented, and on Windows it was practically invisible. Only careful firmware auditing and Linux security tools revealed that the DfIsTsmeEnabled flag now read FALSE on consumer silicon, turning off a protection many privacy-minded users had come to rely on.

A Hobbyist Spots the Problem and Sparks Backlash

The controversy started when privacy‑conscious Linux hobbyist Ben Kilpatrick installed a fresh OS on a Ryzen 7 9700X system and ran Host Security ID, a tool that audits firmware protections. Logs that once showed encrypted RAM now flagged it as unsupported, despite TSME appearing enabled in the BIOS. After months of testing with MSI, engineers confirmed that older firmware reported TSME as supported on consumer chips, while AGESA 1.2.7.0 did not, even though Ryzen Pro processors still showed active encryption on the same boards. According to TechnoBezz, MSI’s controlled swaps between a consumer Ryzen 9800X3D and a PRO Ryzen 9945 proved the internal tsme_status flipped from 1 to 0. That evidence, combined with AMD’s initial insistence that TSME was “only applied to PRO CPUs,” fueled a wave of community criticism focused less on the risk level and more on AMD’s silence.

AMD Removed Then Restored Ryzen Memory Encryption: The Backstory

Why Pro Chips Kept Encryption and What That Signals

A striking detail is that Ryzen Pro processors never lost TSME at all. On the same X870E motherboard, MSI observed that a PRO Ryzen 9945 returned tsme_status = 1 while a consumer 9800X3D reported tsme_status = 0, even under identical BIOS settings. Dumps from the AMD Boot Loader showed the DfIsTsmeEnabled flag forced to FALSE on consumer silicon, suggesting a policy choice rather than a hard technical limit. Meanwhile, AMD’s higher-tier SME feature has always been restricted to Pro and EPYC chips, reinforcing the idea of deliberate segmentation. With Intel already offering total memory encryption widely on consumer CPUs, AMD’s move raised questions: was TSME disabled to avoid performance overhead, to differentiate product lines, or both? The lack of clear communication left users guessing about how AMD weighs performance tuning against baseline physical memory attack protection.

AMD Removed Then Restored Ryzen Memory Encryption: The Backstory

AMD’s Reversal and What Users Should Do Now

Following the backlash, AMD changed course. After speaking with Tom’s Hardware, the company confirmed it will restore TSME on non‑PRO Ryzen 9000 chips through a future BIOS security update, citing “valuable community feedback.” Wccftech reports that motherboard vendors will ship new firmware that re‑enables Transparent Secure Memory Encryption on mainstream Ryzen models. While the attack it mitigates requires physical access, losing it without notice undermined trust for users handling sensitive workloads on consumer hardware. Once updated BIOSes appear, Ryzen owners who care about protection from physical memory attacks should update to the latest firmware, confirm that TSME or encrypted RAM is reported as supported, and keep an eye on AGESA release notes. The episode underlines that security features on consumer CPUs can change quietly—and that community scrutiny is often the only early warning system.

Milik earns a commission when you shop through our links, at no extra cost to you. This article was generated with AI from published sources and product data.

Related Products

You May Also Like

Comments
Say something...
No comments yet. Be the first to share your thoughts!