The DMA problem was solved. https://docs.microsoft.com/en-us/windows/security/informatio...
System compatibility
Kernel DMA Protection requires new UEFI firmware support. This support is anticipated only on newly-introduced, Intel-based systems shipping with Windows 10 version 1803 (not all systems).
So, it's CPU specific, motherboard specific, firmware specific, and OS version specific.
That's not really solved, is it?
The problematic part is that the UEFI needs to support it, it seems most systems with Thunderbolt have enabled it since 2018 and systems without Thunderbolt still don't bother.
It's mandatory for thunderbolt 4.
Anyway mitigation is considered to enough TB/USB4 to be adopted for new devices.