Hacker News new | ask | show | jobs
by jarfil 2839 days ago
So when are we getting encrypted RAM?

With all the talk I hear about "cache being the new RAM", since it's so much faster, particularly the L1, it sounds like it would make sense to have some transparent encryption going on. A random key generated at power on, then kept inside the CPU, and instantly lost at power off, would be enough to secure the contents of DIMMs against attacks like this.

3 comments

I believe some AMD CPUs already support it, and there's some mention of it in Linux Kernel docs (https://github.com/torvalds/linux/blob/master/Documentation/...), but I'm not sure if it's actually used in practice or not.
It already exists on AMD: https://en.wikichip.org/wiki/x86/sme
Somebody could put a hardware keylogger on your keyboard interface instead. Or de-solder your CPU and replace it with a backdoored version.
Seriously?

How many backdoored CPU attacks have you heard of before?

If you need protection against that, might as well live inside a vault.