A commit enabling the TZASC on NXP i.MX 8M sent us down a rabbit hole: how a DDR memory alias bypasses Arm TrustZone and exposes OP-TEE's secure memory to Linux.