AMD disclosed security advisory AV26-800 for vulnerabilities affecting AMD EPYC Series Processors and AMD EPYC Embedded Series Processors. The issue is tied to research describing how attackers may extract virtual machine secrets through power side channels against systems using AMD SEV-ES and SEV-SNP, technologies intended to protect confidential workloads in virtualized environments.
The Canadian Centre for Cyber Security issued a notice urging users and administrators to review AMD's product security guidance and apply vendor updates as they become available. Organizations running EPYC-based infrastructure, particularly cloud and virtualization environments relying on SEV protections, have been directed to monitor AMD advisories closely and prioritize remediation once patches or mitigations are released.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
On August 11, 2026, the Canadian Centre for Cyber Security published security advisory AV26-800 about the AMD vulnerabilities. The advisory directed users and administrators to review AMD Product Security information and apply updates when available.
On 2026-08-10, AMD published security bulletin AMD-SB 3032 describing PowerHooK, a software-based power side-channel attack affecting SEV-ES and SEV-SNP on AMD EPYC and EPYC Embedded processors. AMD said the technique offers an alternative way to exploit already known vulnerabilities and recommended mitigations including restricting hypervisor access to RAPL for SEV-SNP and using constant-time, side-channel-resistant software practices.
The Canadian Centre for Cyber Security said that, as of August 10, 2026, AMD was affected by vulnerabilities impacting AMD EPYC Series Processors and AMD EPYC Embedded Series Processors. The notice referenced research on extracting VM secrets through power side channels on AMD SEV-ES and SEV-SNP.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
5 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourcecyber.gc.ca
Open sourcecirt.gy
Open sourceamd.com
Open sourceamd.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.