A BIOS update could be all that's stopping you or someone else from jailbreaking your old AMD CPU

Pipboy holds up an open padlock.
(Image credit: Bethesda)

Anyone owning an AMD CPU with Zen 1 - Zen 4 microarchitecture may want to double check their BIOS is up to date. According to Tom's Hardware, AMD CPUs with a BIOS patch earlier than 2014-12-17 have a vulnerability that allows anyone with local admin privileges to potentially upload new microcode to the units. This means altering the basic code which dictates how these CPUs run. This isn't something that's usually accessible or even visible outside of official AMD patches.

The exploit was discovered by a team of Google researchers who've been working alongside AMD, and it affects a tonne of chips released over the past eight years. This means if you're rocking something like the Ryzen 7 5700X3D from last year you could be vulnerable thanks to its Zen 3 architecture, whereas those with the AMD Ryzen 7 9800X3D should be safe with that newer Zen 5.

Now that the exploit is all fixed with the recent patch, the team have detailed their discovery and hacking processes made possible thanks to EntrySign, the microcode signature validation vulnerability in these chips. This includes how to hack it yourself, so if you're interested in jailbreaking your CPU maybe hold off on those updates.

EntrySign is exploitable thanks to a lack of proper encryption cryptographics. For these CPUs AMD was using the AES-CMAC function which is a message authentication code rather than a proper cryptographic hash function. With CMAC, anyone with the encryption key can see the steps in the encryption calculations, allowing them to reverse engineer and predict the outcome.

In this instance, AMD were using a publicly accessible NIST example key, making things all the more easier for potential bad actors. Hash functions that are properly designed for this kind of security don't have such keys to be exploited in the first case.

For security, this is pretty bad news. Having access to changing microcodes allows people to mess with the internal CPU buffers, and could have huge implications for security on virtual machines. The requirement of host ring 0 access is one of the saving graces in this exploit.

Host ring 0 refers to the most privileged layer of security as it talks directly to physical hardware. Basically we are talking about local admin privileges. The second ray of light is that any changes don't persist through a reboot, so power cycling any affected computers then immediately updating the BIOS should have you set.

The ability to remove changes on reboot also makes this a relatively safe project for anyone wanting to play with microcode on their CPU. It's not often we get such a close look at how processors actually run, so it's a good opportunity for the technology curious to get hands on.

The breakdown from Google gives you all the steps and tools you could need and Tavis Ormandy, one of Google's engineers on the project, proclaimed "jailbreak your AMD CPU" when sharing it on X, which isn't something you get the chance to do every day.

Best CPU for gamingBest gaming motherboardBest graphics cardBest SSD for gaming


Best CPU for gaming: Top chips from Intel and AMD.
Best gaming motherboard: The right boards.
Best graphics card: Your perfect pixel-pusher awaits.
Best SSD for gaming: Get into the game first.

TOPICS
Hope Corrigan
Hardware Writer

Hope’s been writing about games for about a decade, starting out way back when on the Australian Nintendo fan site Vooks.net. Since then, she’s talked far too much about games and tech for publications such as Techlife, Byteside, IGN, and GameSpot. Of course there’s also here at PC Gamer, where she gets to indulge her inner hardware nerd with news and reviews. You can usually find Hope fawning over some art, tech, or likely a wonderful combination of them both and where relevant she’ll share them with you here. When she’s not writing about the amazing creations of others, she’s working on what she hopes will one day be her own. You can find her fictional chill out ambient far future sci-fi radio show/album/listening experience podcast right here. No, she’s not kidding. 

You must confirm your public display name before commenting

Please logout and then login again, you will then be prompted to enter your display name.

Read more
Motherboard with Multiple Memory Slots for High Performance Computing
Researchers have found a way to hack the memory on some virtual machines using a Raspberry Pi
ASRock X870 Steel Legend WiFi motherboard
Reddit reports of 9800X3D CPUs dying in ASRock motherboards are racking up fast, but a new BIOS update seemingly only addresses boot problems
Robert Hallock, VP of CCG at Intel, on stage at CES 2025.
Intel unveils second round of updates intended to bring Arrow Lake desktop chips up to expectations: 'our software for the 200S has reached full performance'
A screenshot from a YouTube video showing a sticker being pulled from the front of a fake 9800X3D CPU
This Amazon-bought fake AMD Ryzen 7 9800X3D is actually a 14-year-old Bulldozer chip with a cheap sticker on it
A close-up photo of AMD's AM4 CPU socket
Old AM4 CPUs including the Ryzen 5000 still make up 50% of AMD's sales today
AMD press slide detailing the Ryzen 9 9950X3D processor.
AMD's Ryzen 9 9950X3D and 9900X3D CPUs are rumoured to launch at the end of March at roughly the same time as the RX 9070-series GPUs
Latest in Processors
Pipboy holds up an open padlock.
A BIOS update could be all that's stopping you or someone else from jailbreaking your old AMD CPU
A screenshot from Sony's PlayStation 5 Pro announcement video, showing a stylized processor against a dark background with glowing lines streaming from its edges
The AMD x Sony collab gave us FSR4 and a version will appear in PlayStation next year, too, having 'already started to implement the new neural network on PS5 Pro'
A screenshot from a YouTube video showing a sticker being pulled from the front of a fake 9800X3D CPU
This Amazon-bought fake AMD Ryzen 7 9800X3D is actually a 14-year-old Bulldozer chip with a cheap sticker on it
A close-up stylized photo of a silicon wafer, showing many small processor dies
Intel is still using TSMC for 30% of its wafer demands: 'We were talking about trying to get that to zero as quickly as possible. That's no longer the strategy'
Monster Hunter Wilds screen
Monster Hunter Wilds: Turns out updating drivers fixes brand new game. Again
Qualcomm Snapdragon X Elite logo on a Samsung laptop
Next-gen Snapdragon X2 chip rumoured to pack 18 cores and a new CPU architecture, but we're still waiting for gaming to really be a goer on the original Snapdragon X
Latest in News
Nvidia RTX 4060 Ti graphics card
Specs for Nvidia's new RTX 5050, 5060, and 5060 Ti GPUs leak out and that 5060 might actually be half decent. If it's priced right
Pipboy holds up an open padlock.
A BIOS update could be all that's stopping you or someone else from jailbreaking your old AMD CPU
Asus's new ultrawide sucks as hard as it blows
Asus' new monitors purify 90% of airborne dust from your desktop and I've definitely seen some gnarly gaming setups that would benefit
A screenshot from Sony's PlayStation 5 Pro announcement video, showing a stylized processor against a dark background with glowing lines streaming from its edges
The AMD x Sony collab gave us FSR4 and a version will appear in PlayStation next year, too, having 'already started to implement the new neural network on PS5 Pro'
Pedro Pascal as Joel in a coat in winter looking unhappy
'Don't you know what he did?': The truth comes out in The Last of Us Season 2 trailer
Aloy
'Creepy,' 'ghastly,' 'rancid': Viewers react to leaked video of Sony's AI-powered Aloy