<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[New GPUThor attack defeats NVIDIA ECC protection for root access]]></title><description><![CDATA[<p dir="auto">A newly detailed Rowhammer technique, dubbed <strong>GPUThor</strong>, is shown to bypass the error-correcting code (ECC) protections built into NVIDIA GPUs. By exploiting the physical limitations of DRAM refresh cycles, the attack can induce bit flips inside GPU memory, undermining the reliability safeguards meant to prevent such corruption.</p>
<p dir="auto">The implications are two-fold: the attack can cause a denial-of-service (DoS) condition by corrupting critical data, or it can be used for root-level privilege escalation. This undermines the long-held assumption that ECC memory is a robust defense against Rowhammer-style disturbances.</p>
<p dir="auto">Key affected configurations include GPUs where ECC is enabled by default:</p>
<ul>
<li>NVIDIA H100, A100, and A800 data center GPUs</li>
<li>NVIDIA RTX A6000 and RTX A5000 professional GPUs</li>
<li>Consumer GeForce RTX 3090 and RTX 4090 (where ECC is explicitly enabled)</li>
</ul>
<p dir="auto">The research team demonstrated the attack without relying on any software vulnerabilities in the NVIDIA driver stack. Instead, they used a method called <em>unprivileged GPU memory allocations</em>, paired with massive memory traffic, to trigger the bit flips. They also confirmed that software mitigations like <strong>NVIDIA’s driver-level error reporting</strong> do not stop the attack, as the ECC correction itself is silently bypassed.</p>
<p dir="auto">For administrators, the practical risks are real but require local access or a GPU-accelerated workload. Mitigation is not straightforward: disabling ECC is not a safe alternative, and the attack appears to be resistant to current driver patches. The researchers suggest monitoring for unusual error rates in GPU logs, though this may not catch the targeted bit flips.</p>
<p dir="auto">Source: <a href="https://www.bleepingcomputer.com/news/security/new-gputhor-attack-defeats-nvidia-ecc-protection-for-root-access" target="_blank" rel="noopener noreferrer nofollow ugc">BleepingComputer</a></p>
<p dir="auto">Is your organization running any of the listed NVIDIA data center GPUs, and if so, what are you doing to monitor for potential Rowhammer attempts on your GPU memory?</p>
]]></description><link>https://xploitlk.com/topic/111/new-gputhor-attack-defeats-nvidia-ecc-protection-for-root-access</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 13:29:51 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/111.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 26 Aug 2026 20:30:31 GMT</pubDate><ttl>60</ttl></channel></rss>