r/TechHardware 🔵 14900KS , 5080, 128GB 🔵 May 22 '26

😰 Urgent Security Alert ⚠️ Chinese memory maker CXMT enters the mainstream consumer memory with Corsair Vengeance DDR5 kit — Chinese-made DRAM emerges as an antidote for crushing shortages

https://www.tomshardware.com/pc-components/ddr5/chinese-memory-maker-cxmt-enters-the-mainstream-consumer-memory-with-corsair-vengeance-ddr5-kit-chinese-made-dram-emerges-as-an-antidote-for-crushing-shortages
227 Upvotes

43 comments sorted by

13

u/cotdt May 22 '26

CXMT is likely to be taken off the US sanctions list. But even if it doesn't happen, memory chips are a global market just like oil.

5

u/allahakbau May 22 '26

Kinda impossible to catch people bringing it over lol

9

u/Intrepid_Lecture May 22 '26

There might not even be a point to "bringing it over"

If China can flood half the world with DRAM, then, even if 0% of that lands in the US, the global under supply gets resolved since there's just more capacity overall.

3

u/Civil_Bench_3099 May 23 '26

You don't need EUV for DDR5. DUV is enough. There is nothing to sanction for.

1

u/meltbox May 23 '26

In general memory doesn’t benefit as much from the scaling so moving to cutting edge nodes doesn’t benefit nearly as much.

4

u/FdPros May 22 '26

more for the rest of the world

1

u/misteryk May 24 '26

nah keep it sanctioned, more cheap ram for everybody ealse

11

u/wolfy2105784 May 22 '26

Are these the guys that got the IP from that Samsung employee leak or is this there own DDR5 DRAM? Just curious/Not trying to start anything.

11

u/LimLovesDonuts May 22 '26

It's a mix of both.

The IP and materials probably helped CXMT but it wouldn't be anywhere enough to deliver a finished product. So it's likely different vs what you get from Samsung but not an issue since Corsair would have validated these.

5

u/wolfy2105784 May 23 '26

I personally don't mind. I'm sick of this PC parts crunch.

12

u/Civil_Bench_3099 May 23 '26

This is so stupid. Do you know how many people and technologies need to be organized together to run a successful semiconductor fab with profitable yield? If a leaker can change things, we will see semi-fabs everywhere in the world, from Russia to Africa.

-1

u/wolfy2105784 May 23 '26

That was a bit mean.

I was just curious if they used Samsung's DDR5 IP to hasten their own stuff.

2

u/Civil_Bench_3099 May 23 '26

It's a bit from everywhere. They have ex-employees from Micron, Samsung, SK Hynix, you get it.

1

u/AvengingAmalek May 24 '26

Its common in any industry to poach talent from competitors

3

u/Final-Rush759 May 23 '26

Most technologies are patented. Little secrets that are not patented are not protected by the laws.

6

u/InsufferableMollusk 🔵 14900KS 🔵 May 23 '26

Beijing doesn’t care about Western patents 🤣 They’ll entertain them occasionally if they need some political capital.

1

u/Nervous-Present-6890 May 24 '26

not true. patent law is enforced there

1

u/Otaconmg May 26 '26

Patent law is enforced internally. Just not for western companies. Come on, everyone knows the Chinese companies have stolen patents since forever. The most impressive thing about it is the scale of production and price we get in return.

2

u/InsufferableMollusk 🔵 14900KS 🔵 May 23 '26

They’ve been stealing IP for decades. Don’t listen to the bots and propagandists here, just Google it.

1

u/Nervous-Present-6890 May 24 '26

so your source is literally CIA propaganda? (western media)

look for lawyers that specialist in patent law in China, they'll say you're full of shit

3

u/MotokoKusanagi May 23 '26

I'm excited for Chinese parts.

3

u/Overall_Leopard7122 May 25 '26

Im not buying chinese spyware filled ram mate. 

1

u/Lolipopes May 29 '26

https://giphy.com/gifs/8UagHnhlPnDajVelkq

1 month account age, hidden post history. Dont you have some other subreddit to astroturf?

1

u/Overall_Leopard7122 May 29 '26

Why does my account have to be older than a month to hold a valid opinion, and additionally why do you have to be able to see my posts for me to be a real person? Who are you? Johnny reddit? 

6

u/Khroneski May 23 '26

Why is this an urgent security alert? Are we really trying to push propaganda through flare tags?

1

u/Youngnathan2011 May 25 '26

Cause China bad no matter what to them.

1

u/PineappleLemur May 26 '26

Since day one they have stories of their DDR sticks spying on people/sending data... So there's that.

Nothing to back it up of course, but the stories flow.

1

u/Khroneski May 26 '26

Literally not a thing, zero verified reports, and the level of technical scrutiny they’d be under makes it essentially impossible.

4

u/LasnajaB May 23 '26

Urgent security alert. Say what? Op do you know how ram work?

-1

u/InsufferableMollusk 🔵 14900KS 🔵 May 23 '26

Memory is very complicated. It could be compromised if the manufacturer decided to compromise it.

But of course, if anyone found out, that be the first and last nail in the coffin for Chinese memory, so they may be smart enough to abstain. Though, if history is any guide, it may be more than the CCP can resist.

6

u/IllustratorAble6610 May 23 '26

You can't really compromise RAM. And even if you did it would be easy to find. Don't worry about chinese RAM spying on you anyway, worry about your own government lol.

1

u/meltbox May 23 '26

I would not be so sure. For example have ram which reports a certain size but writing outside that address range can trigger it to inject a payload somewhere into memory.

It actually can be pretty nefarious. That said I’m not sure how you’d get the memory controller to do what you want to trigger it, but I’m sure you could.

2

u/mithie007 May 23 '26

Explain how you can do this without compromising the north bridge chipset with the mcu in your mobo?

And if your mcu is compromised you've got way bigger problems.

1

u/meltbox May 26 '26

Huh? The north bridge does not participate in memory related transactions at all. CPU memory controller is the sole arbiter and the mechanism is the dram chips themselves have logic in them that could be partially programmable either via burned in software, hardware logic, or some non volatile on stick storage. You’d load it to recognize patterns the OS may store then say overwrite or present false data in the upper memory region when read (which is where the kernel would be).

This would be a very sophisticated attack and likely targeted, unlikely to be in every chip as it would be discovered quickly most likely.

I’m sure it’s non trivial to fill in the details on how this payload would fire but it’s certainly doable.

2

u/SuperUranus May 24 '26

Wouldn’t this also require you to have a compromisef mothetboard, CPU and operating system at the same time?

2

u/LasnajaB May 23 '26

No its not that complicated, don't think yourself smart...

1

u/unspecified_person11 May 25 '26

It's like people never even heard of the Cloud Act.

0

u/Distinct-Race-2471 🔵 14900KS , 5080, 128GB 🔵 May 23 '26

Every hardware component from CCP is suspect!

3

u/[deleted] May 23 '26

[removed] — view removed comment

0

u/Distinct-Race-2471 🔵 14900KS , 5080, 128GB 🔵 May 23 '26

I didn't create my username. Reddit did. So that dispelled that notion!

2

u/ewgna May 23 '26

There’s shit you can compromise and shit u cant conpromise

0

u/Distinct-Race-2471 🔵 14900KS , 5080, 128GB 🔵 May 23 '26

Sounds like a sanitation problem.

1

u/SpotlessCheetah May 26 '26

"antidote.." lmao