AMD Quietly Removes TSME Support from Consumer Ryzen CPUs, Leaving Feature for Ryzen PRO Chips
AMD has reportedly removed support for Transparent Memory Secure Encryption, better known as TSME, from consumer Ryzen processors, limiting the feature to its Ryzen PRO lineup. The change has raised concerns among privacy-focused users because it appears to have happened without a clear public announcement.
TSME is a hardware-based memory encryption feature designed to protect data stored in system RAM. When enabled in the BIOS, it automatically encrypts memory using a key generated by the processor during startup. Unlike AMD’s standard Secure Memory Encryption, TSME does not require operating system involvement, making it a more seamless security option for users who want memory protection enabled at the firmware level.
The issue came to light after Linux user Ben Kilpatrick discovered that TSME was no longer active on his Ryzen-based desktop system. The system was running a Ryzen 7 9700X on an MSI motherboard, and the change was noticed after a BIOS update and a fresh operating system installation.
To verify that hardware and firmware protections were working properly, Kilpatrick used Host Security ID, a tool that checks platform security settings. The results showed that TSME was no longer supported. This was surprising because the feature had previously worked on the same system and was still enabled in the BIOS.
According to the findings, older motherboard firmware versions from MSI and GIGABYTE appeared to support TSME on consumer Ryzen systems. However, with AGESA 1.2.7.0 and newer firmware, TSME began showing as “not supported” on non-PRO Ryzen processors.
At first, the behavior looked like a bug. Kilpatrick filed a report through AMD’s public engineering repository, assuming the change may have been accidental. AMD engineers initially suggested checking or re-enabling the BIOS setting, but further testing eventually pointed to a deliberate platform limitation.
After additional communication between MSI and AMD, MSI reportedly confirmed that AMD stated TSME is supported exclusively on Ryzen PRO processors. Internal motherboard testing also appeared to support this conclusion. When a Ryzen PRO chip was installed, the TSME status returned an enabled value. When a standard consumer Ryzen processor was used, the feature remained unavailable.
For many typical desktop users, the immediate security risk may be limited. TSME mainly helps protect against attacks that require physical access to a system, such as cold boot attacks, where an attacker attempts to recover sensitive data from RAM after shutdown or reboot. Still, for users who specifically choose hardware based on security features, the loss of TSME support is significant.
The main criticism is not only that the feature appears to have been removed from consumer Ryzen processors, but that AMD did not clearly communicate the change to users. Enthusiasts, Linux users, developers, and privacy-conscious buyers may have assumed that TSME support remained available, especially if their BIOS continued to show the option.
This situation highlights a larger issue in PC hardware security: firmware updates can change important platform capabilities, sometimes without obvious warnings. A user may update the BIOS for stability, CPU compatibility, or performance improvements, only to discover that a security feature no longer works as expected.
For now, users who require TSME appear to need a Ryzen PRO processor rather than a standard Ryzen desktop chip. Those concerned about platform security should also review BIOS update notes carefully, check available security features after updating firmware, and verify protections using trusted hardware security auditing tools.
AMD has not broadly advertised this change to mainstream Ryzen users, which is why the discovery has attracted attention. While Ryzen PRO processors are aimed at business and enterprise environments where security features are often prioritized, many consumer users still value hardware-level protections. The quiet removal of TSME support from standard Ryzen systems may leave some buyers questioning how clearly security capabilities are being communicated.






