This blog post discusses the significance of self-encrypting virtual machine (VM) images in confidential environments, particularly in light of AMD's SEV-SNP and Intel's TDX technologies. It highlights the importance of data protection in runtime to guard against potential threats from malicious virtualization hosts, while noting that persistent storage protection remains a challenge for the guest operating system.