< Back to situations

Monitor this situation.

[SITUATION] · [ACTIVE] · [TECHNOLOGY]

2 clusters · 4 sources · 13 days · First seen · Last updated

Computer memory architecture security vulnerabilities

Overview

Researchers have identified critical vulnerabilities in computer memory architecture that allow attackers to bypass hardware and software security boundaries. One method, referred to as the “Download More RAM” attack, exploits unprotected configuration chips on certain consumer RAM modules from manufacturers such as Corsair, G. Skill, and ADATA. By rewriting information reported to the system, software can trick an operating system like Windows into believing the computer has more RAM than it actually does.

This creates memory aliases that allow attackers to read or modify protected data without physical access to the device. The vulnerability enables the arbitrary reading and modification of memory, including areas that the operating system and processor are designed to isolate. This technique can be used to re-enable vulnerable drivers, compromise corporate systems, and evade kernel-level protections.

In addition to configuration chip exploits, research has detailed a DRAM scrambling attack that manipulates the memory controller’s address-translation logic. By altering how physical addresses map to DRAM cells, attackers can bypass hardware protections such as SEV, SGX, TDX, and TrustZone. Microsoft has addressed these issues via CVE-2026-23670, providing mitigations in security updates for Windows 10 and 11.

Entities

University of Birmingham · University of Durham · Christopher Domas · USENIX Security Symposium · Microsoft

Claims

What the coverage asserts, and how many sources carry each claim.

Timeline

  1. 3 days ago

    [TECHNOLOGY] 4 sources
    Windows 11 security vulnerability discovered in consumer RAM

    Researchers have discovered a software-based vulnerability in Windows 11 that allows attackers to bypass core security protections by exploiting unprotected configuration chips in consumer RAM modules.

  2. 15 days ago

    [TECHNOLOGY] 3 sources
    Memory controller vulnerabilities allow bypass of hardware security

    New research reveals vulnerabilities in DRAM controllers and memory configuration chips that allow attackers to bypass Windows 11 defenses and hardware security boundaries like SGX and TrustZone.

Sources

ocio.diariodemallorca.es · ocio.diarioinformacion.com · ocio.farodevigo.es · startup.mandiner.hu