3 ms·
AMD states that the PSP is "ARM TrustZone ... An Industry Standard Approach" right on their website: https://www.amd.com/en/technologies/security https://www.am
by StudentStuff 7y ago
AMD states that the PSP is "ARM TrustZone ... An Industry Standard Approach" right on their website: https://www.amd.com/en/technologies/security https://www.amd.com/en/technologies/security
Wrt renegotiating with ARM, there is no leverage for AMD. TrustZone is already baked into their chips for the next 2 to 3 years, and if the negotiations go badly then ARM could block AMD from selling any processors for at least a year.
AMD did hire a security consultant (due to the Change.org petition) that told them TrustZone was vulnerable, but this means they need to implement their own PSP which is something that will take 3 years or more (silicon has a very elongated development cycle).
Had AMD not been on death's doorstep for the years preceding the new Zen architecture, they likely would have built their own PSP. Being financially insolvent and desperate to meet the requirements of their OEM partners forced them to license a pre-built PSP.
- dearrifling 7y agoThis the first time I heard about a change.org petition having any effect.
- makomk 7y agoARM TrustZone is basically just a hypervisor-like execution level that runs above the actual hypervisor called the "secure world", along with ways of calling into it. There's already open-source implementations of the firmware for the secure world on ARM chips, including one from ARM themselves: https://github.com/ARM-software/arm-trusted-firmware https://github.com/ARM-software/arm-trusted-firmware All of the really super-secret security and DRM critical stuff is in the vendor's hardware and code.