LIVE · cybersecurity feed
Live wire
CVE-2026-15409 · Edge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeterAnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodesCVE-2026-60004 · Hackers now exploit critical Gitea flaw in code injection attacksEmployee benefits platform Paylogix says hackers stole financial and health dataU.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure BreachesCVE-2026-61979 · Two CVSS 9.8 Auth Bypasses in miniOrange SAML WordPress Plugin Were Exploited Before Any Database Even Listed the Paid Editions as VulnerableCVE-2024-28224 · A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClawAustralia Warns of Active Exploitation of Critical TeamCity Server FlawCVE-2026-21962 · Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical DataUS sanctions Iranian cyber actors as UK discloses power plant attack
security

New GPUThor attack defeats NVIDIA ECC protection for root access

A newly disclosed Rowhammer attack called GPUThor can bypass error-correcting code (ECC) protections on NVIDIA GPUs, enabling denial-of-service (DoS) and root-level privilege escalation. [...]

zeroday.news ·

A newly identified Rowhammer attack, dubbed GPUThor, has been shown to bypass error-correcting code (ECC) protections on NVIDIA GPUs, potentially leading to denial-of-service (DoS) conditions and root-level privilege escalation. Researchers from the University of Toronto demonstrated the attack against NVIDIA Ampere-class workstation GPUs utilizing GDDR6 memory, including the RTX A4000, RTX A4500, RTX A5000, and RTX A6000 models. These GPUs are commonly deployed in AI and cloud infrastructure environments.

Rowhammer attacks exploit a vulnerability where repeated access to memory rows can cause bit flips in adjacent memory regions. While NVIDIA employs SECDED ECC to correct single-bit errors and detect double-bit errors, GPUThor employs a non-uniform hammering pattern designed to avoid triggering GDDR6's Target Row Refresh (TRR) mitigations. This pattern was developed by accounting for undocumented GPU behaviors related to memory request coalescing and TRR activation frequency.

Compared to previous Rowhammer attack concepts, GPUThor significantly increases aggressor-row activations, achieving between 72,000 and 377,000 bit flips per GB on tested GPUs without ECC protections. This represents a 4,548 to 23,597-fold increase over the researchers' prior GPUHammer attack. At these rates, an exploitable bit flip could be found in approximately 1.1 minutes, a substantial reduction from 21.9 hours with GPUHammer.

With ECC enabled, GPUThor generated 387 double-bit errors, which ECC detects but cannot correct. Additionally, two triple-bit errors were observed, which ECC incorrectly repaired, resulting in data corruption. The researchers demonstrated that GPUThor could induce a DoS state on an ECC-enabled RTX A6000, causing the GPU to reset every two hours and terminate workloads. Repeated attacks on the same card could lead to the device marking itself as requiring replacement.

More critically, the researchers claim GPUThor can achieve root-level privilege escalation by corrupting GPU page tables. This could grant an unprivileged CUDA program arbitrary memory access and enable the opening of a root shell on the host system.

Beyond the four confirmed vulnerable models, the researchers indicate that privilege escalation may also be possible on server-class Ampere GPUs (A100), despite their improved resilience to DoS conditions, because they still rely on SECDED-level ECC. For some Blackwell GPUs, the RAS Repair resilience feature could make a GPUThor attack more time-consuming but not entirely prevent it. The researchers also suggest that HBM3/e and GDDR7 GPUs with on-die ECC might be vulnerable if multi-bit flips are triggered.

The University of Toronto researchers reported their findings to NVIDIA on April 29. NVIDIA subsequently published an advisory on August 21, providing guidance. The company recommends enabling both SYS-ECC and IOMMU/DMA isolation, monitoring GPU error telemetry, and restricting the sharing or execution of untrusted workloads. NVIDIA noted that the risk varies depending on the DRAM device, memory technology, platform design, in-DRAM defenses, and system configuration, and stated that no bit flips were observed on tested GDDR6X or HBM2e GPUs using the same attack patterns.

The researchers advise avoiding cross-tenant GPU sharing where feasible, monitoring ECC error counters, and restricting untrusted CUDA workloads. They suggest that comprehensive protection will likely necessitate stronger multi-bit ECC and hardware-level defenses in future GPU designs.

ShareXLinkedInWhatsAppFacebook

More News

view all →
security

More than 100 water systems were hit in July cyberattacks

'These are test runs for a larger-scale attack'

breach

OpenAI: Agent behavior that led to Hugging Face intrusion formed in May

The company says the breach stemmed from a systemic failure of alignment and security, and has taken measures to prevent agents from independently orchestrating complex cyberattacks. The post OpenAI: Agent behavior that led to Hugging Face intrusion formed in May appeared first on CyberScoop.

security

Meta agrees to $18 billion settlement over teen social media harms

Meta has reached a proposed settlement worth up to approximately $18 billion with a bipartisan coalition of 52 attorneys generals over allegations that Facebook and Instagram were deliberately designed to encourage compulsive use by children and teenagers. [...]

security

US takes down alleged Chinese hacking tools used against Federal Reserve, DOJ and Senate

The DOJ said it disrupted Chinese state-backed tools used to scan, infect and exploit IoT devices for attacks on federal agencies and multiple industries.

entra id

Who Has Admin Rights in your Entra ID Directory?, (Wed, Aug 26th)

Managing administrative privileges within Microsoft Entra ID (formerly Azure AD) is crucial for security. Organizations often struggle with having too many administrators, including those with excessive permissions. This issue is highlighted by security frameworks like the CIS Critical Controls, emphasizing the need for strict access control and regular review of admin rights.

security

Boston Scientific discloses 'global disruption' in ongoing cyberattack

No timeline to restore IT systems as probe remains ongoing