• News/
  • https://www.theregister.com/2025/05/11/cpu_ransomware_rapid7/

You think ransomware is bad? Wait until it infects CPUs

The Register
·
Jessica Lyons
·
Published May 11, 2025
·
Updated

RSAC If Rapid7's Christiaan Beek decided to change careers and become a ransomware criminal, he knows exactly how he'd innovate: CPU ransomware. The senior director of  threat analytics for the cybersecurity company got the idea from a bad bug in AMD Zen chips that, if exploited by highly skilled attackers, would allow those intruders to load unapproved microcode into the processors, breaking encryption at the hardware level and modifying CPU behavior at will. Typically, only chip manufacturers can provide the correct microcode for their CPUs, which they might do to improve performance or fix holes. While it's difficult for outsiders to figure out how to write new microcode, it's not impossible - in the case of the AMD bug, Google demonstrated it could inject microcode to make the chip always choose the number 4 when asked for a random number. "Coming from a background in firmware security, I was like, woah, I think I can write some CPU ransomware," Beek told The Register. Spoiler alert: Beek followed through and wrote proof-of-concept code for ransomware that hides in the computer's processor. "Of course, we won't release that, but it's fascinating, right?" This, according to Beek, is the worst-case scenario. "Ransomware at the CPU level, microcode alteration, and if you are in the CPU or the firmware, you will bypass every freaking traditional technology we have out there." It's not an entirely theoretical risk, though honestly very slim right now. There are some indication...

Read full article

Affected Software

2 affected components
AMD Zen chips
AMD Zen
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses the concept of CPU ransomware as a potential threat in the cybersecurity landscape.

2

Who is the expert quoted in the article discussing CPU ransomware?

Christiaan Beek, the senior director of threat analytics at Rapid7, is the expert quoted.

3

What unique type of ransomware does the article propose could emerge?

The article proposes the emergence of CPU ransomware that could target processors directly.

4

What specific hardware is mentioned as potentially affected by CPU ransomware?

The affected hardware mentioned includes AMD Zen chips.

5

What are the security implications of CPU ransomware as discussed in the article?

The security implications include a new layer of complexity and risk as ransomware could operate directly at the hardware level.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203