PulseAugur
LIVE 12:15:29
tool · [1 source] ·
37
tool

Fabricked flaw bypasses AMD confidential computing, exposes VM memory

Researchers have discovered a software-only vulnerability named 'Fabricked' that bypasses AMD's SEV-SNP confidential computing protections. This flaw allows malicious cloud hosts to read and write to protected virtual machine memory by exploiting how the CPU's Infinity Fabric handles memory routing during boot. The exploit, which has a 100% success rate and requires no code execution within the victim VM, can also forge cryptographic attestation reports, undermining tenant trust in cloud environments. AMD has acknowledged the vulnerability and is working on firmware updates. AI

Summary written by gemini-2.5-flash-lite from 1 source. How we write summaries →

IMPACT Undermines trust in cloud environments relying on hardware-level VM protection, potentially impacting AI workloads requiring confidential computing.

RANK_REASON Researchers disclosed a novel vulnerability in a hardware security feature. [lever_c_demoted from research: ic=1 ai=0.7]

Read on Tom's Hardware →

Fabricked flaw bypasses AMD confidential computing, exposes VM memory

COVERAGE [1]

  1. Tom's Hardware TIER_1 · Etiido Uko ·

    Researchers attack AMD's Infinity Fabric to bypass hardware security protections with 'Fabricked' — flaw lets malicious cloud hosts silently read confidential VM memory and forge attestation reports

    ETH Zurich researchers disclosed “Fabricked,” a software-only attack that manipulates AMD Infinity Fabric routing during boot to undermine SEV-SNP protections on EPYC systems, enabling malicious cloud hosts to read confidential VM memory and forge attestation reports