Total Memory Encryption - how to test whether it works?

OpenSource Ghost

Limp Gawd
Joined
Feb 14, 2022
Messages
237
Some Z790 motherboard makers add Total Memory Encryption (MTE) option in their latest BIOS releases. It is supposed to encrypt system memory to mitigate cold boot attack risks.

How do I know that it works? Microsoft documents about it focus on the "Multi-Key" aspect of this feature meant for VM's, but what about non-VM usage? Aside from dumping my own systen memory content to run an analysis, how do I verify whether my system memory is encrypted when I enable MTE in BIOS?
 
Read an unallocated chunk of heap.

That's all i got, sorry, this oxycodone is kickin' my butt.
 
How do I do that? AFAIK, once OS is loaded, all system memory data is accessible in decrypted format just like with drive encryption that makes file system unreadable, but only until decryption, which happens during boot when user enters password and/or keys.
 
Back
Top