GCP confidential_vm_and_compute_engine Mappings

Confidential VM includes inline memory encryption to secure processing of sensitive data in memory. This type of virtual machine that uses AMD Secure Encrypted Virtualization to provide encryption of data during processing (e.g., data-in-use encryption).

Mappings

Capability ID Capability Description Category Value ATT&CK ID ATT&CK Name Notes
confidential_vm_and_compute_engine Confidential VM and Compute Engine protect significant T1565.003 Runtime Data Manipulation
Comments
Main memory encryption is performed using dedicated hardware within the memory controllers. Each controller includes a high-performance Advanced Encryption Standard (AES) engine. The AES engine encrypts data as it is written to DRAM or shared between sockets, and decrypts it when data is read.
References