Google researchers identify hole in Intel TDX

Intel has worked with Google to figure out how to harden the TDX module in Xeon chips to boost the security of virtual machines

Cliff Saran

By

Published: 26 Apr 2023 11:00

Google’s Project Zero and cloud security teams’ nine-month assessment of the security of the Intel Trust Domain Extension (TDX) has identified a number of areas it needs to improve, but overall, the company gave the new technology, which will be included in the fourth generation of Intel’s Xeon Scalable processor, the thumbs-up.

The TDX module is a feature in the next generation of Xeon processors that provides hardware-isolated virtual machines (VM), known as Trust Domains (TD). These can be used to isolate sensitive resources, such as virtualised physical memory, from the host operating system on which the VM runs.

The research, conducted in collaboration with Intel, looked at how to prevent confidential computing technology from threats today and into the future.

Intel said the research was used to identify if there were obvious defects in TDX and test if it works as expected to ensure the technology could be deployed by both cloud customers and providers. The researchers also wanted to have a better understanding of the expected threat model for TDX, and identify limitations in the design and implementation that would better inform Google’s deployment decisions.

The security review assessed arbitrary code execution in a privileged security context; cryptographic weaknesses; temporary and permanent denial of service and weaknesses in debug or deployment facilities. Intel has also opened the source code to the components the team reviewed so that further research can be performed in public. The source code available for public review includes the TDX Module and Seam Loader.

The report points out a serious implementation issue due to a bug in the Authenticated Code Module (ACM) responsible for initialising the TDX feature.

The researchers found that when the ACM moves between its secure and unsecured state, the bug allows untrusted code to execute in “privileged execution mode”, which has a high level of security. This bug can be exploited to compromise the integrity of the TDX feature and the security of any deployed VMs.

The defects and weaknesses identified during the review were fed back to Intel for remediation.

Nelly Porter, group product manager for Google Cloud, said: “As industry leaders in confidential computing, we make it our mission to thoroughly review the underlying technology, especially as we offer it to our customers. We are pleased at the level of security already baked into Intel TDX, as well as the collaboration between our teams that improves security outcomes for the entire industry.”

“We want to make it such that people don’t worry about the security and trustworthiness of their data,” said Anil Rao, vice-president and general manager of systems architecture and engineering in the office of the chief technology officer at Intel.

“Organisations use confidential computing to control their data and provide access to trusted parties in a manner that is verifiable, revocable and time-sensitive – we have an obligation to make sure the technology is secure. Our early effort with Google solidifies our commitment to perform thorough analysis to address all potential vulnerabilities.”

Read more on IT risk management

Read More
Anthony Antes

Latest

Franklin Templeton says Wall Street fears blockchain because it threatens its profits

Jenny Johnson, Franklin Templeton's CEO, said blockchain and crypto threaten a huge number of business models that exist today in traditional finance. Jun 3, 2026, 7:04 a.m. 2 min read Make preferred on The future of asset management is shifting on-chain, but the transition is exposing a major structural conflict over traditional corporate revenue. Speaking

Big tech is ‘terrified’ of AI agents wiping out ad revenue, says Billions Network CEO

Evin McMullen’s view on AI agents disrupting Google’s and Facebook’s business model was previously shared by Cardano Founder Charles Hoskinson and Cloudflare CSO Stephanie Cohen. Jun 3, 2026, 6:51 a.m. 2 min read Make preferred on The legacy financial and digital frameworks propping up the current internet architecture face an imminent, existential crisis. Evin McMullen

What Responsibilities Come With Sole Proprietorship for Self-Employed Individuals?

As a sole proprietor, you take on significant responsibilities that impact your business and personal finances. You’ll need to maintain precise financial records, file taxes using Schedule C, and guarantee compliance with local regulations. Moreover, you’re personally liable for any business debts, which underscores the importance of liability insurance. Securing the right licenses and permits

Philippine Blockchain Week 2026 marks shift from Web3 potential to real-world deployment

Homepage > News > Business > Philippine Blockchain Week 2026 marks shift from Web3 potential to real-world deployment MANILA, Philippines — The next phase of the digital economy will not be announced after the fact—it will take shape in real time at Philippine Blockchain Week (PBW) 2026. From June 19 to 21 at the SMX

Newsletter

Don't miss

Franklin Templeton says Wall Street fears blockchain because it threatens its profits

Jenny Johnson, Franklin Templeton's CEO, said blockchain and crypto threaten a huge number of business models that exist today in traditional finance. Jun 3, 2026, 7:04 a.m. 2 min read Make preferred on The future of asset management is shifting on-chain, but the transition is exposing a major structural conflict over traditional corporate revenue. Speaking

Big tech is ‘terrified’ of AI agents wiping out ad revenue, says Billions Network CEO

Evin McMullen’s view on AI agents disrupting Google’s and Facebook’s business model was previously shared by Cardano Founder Charles Hoskinson and Cloudflare CSO Stephanie Cohen. Jun 3, 2026, 6:51 a.m. 2 min read Make preferred on The legacy financial and digital frameworks propping up the current internet architecture face an imminent, existential crisis. Evin McMullen

What Responsibilities Come With Sole Proprietorship for Self-Employed Individuals?

As a sole proprietor, you take on significant responsibilities that impact your business and personal finances. You’ll need to maintain precise financial records, file taxes using Schedule C, and guarantee compliance with local regulations. Moreover, you’re personally liable for any business debts, which underscores the importance of liability insurance. Securing the right licenses and permits

Philippine Blockchain Week 2026 marks shift from Web3 potential to real-world deployment

Homepage > News > Business > Philippine Blockchain Week 2026 marks shift from Web3 potential to real-world deployment MANILA, Philippines — The next phase of the digital economy will not be announced after the fact—it will take shape in real time at Philippine Blockchain Week (PBW) 2026. From June 19 to 21 at the SMX

Top 7 Cloud Accounting Software Options for Small Businesses

If you’re a small business owner, choosing the right cloud accounting software can greatly impact your financial management. There are several top contenders available, each with distinct features that cater to various needs and budgets. QuickBooks Online stands out for its user-friendly interface, whereas Wave offers a free option for solo entrepreneurs. As you evaluate

Jury acquits 2 business executives of bribing Navy admiral for government contract

A federal jury has acquitted two business executives of charges that they conspired to bribe a retired four-star U.S. Navy admiral, who is now serving a six-year prison sentence for his conviction on corruption charges By MICHAEL KUNZELMAN Associated Press WASHINGTON -- A federal jury has acquitted two business executives of charges that they conspired

US Business Leaders Optimistic About China Cooperation, Emphasize Importance of Chinese Market

© 2026 China Money Network. All Rights Reserved. Disclaimer: The views, opinions, forecasts, and statements made by our hosts and guests are the personal views of those respective individuals and may or may not be either endorsed or accepted by China Money Network Limited or the companies with which these individuals are employed.

Tesla’s Business Has Become Much More Diversified in Just the Past Five Years. Does That Make Its Stock a Better Buy Today?

Key Points Tesla's energy generation and storage segment generated 27% revenue growth last year. The company's non-automotive segments were able to help offset a double-digit decline in auto revenue in 2025. These 10 stocks could mint the next wave of millionaires › Tesla (NASDAQ: TSLA) is known for its electric vehicles (EVs), and while they