discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.

New GPUThor attack defeats NVIDIA ECC protection for root access

Researchers demonstrate a new Rowhammer attack called GPUThor that can bypass ECC protections on NVIDIA GPUs, leading to DoS and privilege escalation.

By Bill Toulas·Aug 26·bleepingcomputer.com·1 min read

Intelligence analysis by Qwen 2.5 (3B)

New GPUThor attack defeats NVIDIA ECC protection for root access
Image: bleepingcomputer.com

Researchers have developed a new Rowhammer attack, GPUThor, that can bypass error-correcting code (ECC) protections on NVIDIA GPUs, enabling denial-of-service (DoS) and root-level privilege escalation.

Why it matters

This attack highlights the vulnerability of NVIDIA GPUs to Rowhammer attacks, which could lead to significant security risks in AI and cloud infrastructure.

Imagine your computer's memory is like a big box of Lego blocks. Sometimes, the Lego blocks can get mixed up, and that can cause problems. A new trick called GPUThor can make the Lego blocks get mixed up faster, which can cause your computer to stop working or let bad people do bad things.

Analysis

{"heading_1":"The GPUThor Attack","subheading_1":"Details of the Attack","paragraph_1":"NVIDIA recommends enabling both SYS-ECC and IOMMU/DMA isolation, monitoring GPU error telemetry, and restricting the sharing or execution of untrusted workloads. The company notes that no bit flips were observed on the tested GDDR6X or HBM2e GPUs using the same attack patterns.","paragraph_2":"The researchers recommend avoiding cross-tenant GPU sharing where possible, monitoring ECC error counters, and restricting untrusted CUDA workloads. They added that complete protection will likely require stronger multi-bit ECC and hardware-level defenses in future GPUs.","subheading_2":"Impact of the Attack","subheading_3":"Mitigations and Defense"}

Key points

  • Researchers have developed a new Rowhammer attack called GPUThor that can bypass ECC protections on NVIDIA GPUs.
  • The attack can induce a DoS state on an ECC-enabled RTX A6000, causing the GPU to reset every two hours and terminating all workloads.
  • The more interesting attack is escalating privileges to root level, which the researchers claim is possible by corrupting GPU page tables.
  • NVIDIA recommends enabling SYS-ECC and IOMMU/DMA isolation, monitoring GPU error telemetry, and restricting the sharing or execution of untrusted workloads.
  • The researchers recommend avoiding cross-tenant GPU sharing where possible, monitoring ECC error counters, and restricting untrusted CUDA workloads.
The Upside

With better protections in the future, we can prevent the bad people from using this trick to cause problems.

The Downside

If bad people find a way to use this trick, it could cause your computer to stop working or let them do bad things.

Originally reported at

bleepingcomputer.com

Discernion covers the story. Read the full piece at the source.

Tagssecuritygpunvidiarowhammerecc

Author

Bill Toulas

Intelligence analysis by

Qwen 2.5 (3B)

Published

Aug 26, 2026

Source

bleepingcomputer.com

Share

Topics

securitygpunvidiarowhammerecc

Related

More from this desk

Aug 26·bleepingcomputer.com

Critical Avada WordPress theme flaw enables zero-click RCE

Critical vulnerability in Avada WordPress theme can be exploited for arbitrary PHP code execution. CVE-2026-18431 affects Avada versions up to 7.16 and Fusion Builder plugin versions up to 3.16.

Aug 26·thehackernews.com

FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations

FBI disrupts QTFY hacking platforms used by Chinese threat actors to target U.S. critical infrastructure and sensitive networks.

Aug 26·bleepingcomputer.com

Boston Scientific Announces Cyberattack Disrupts Global Operations

Boston Scientific reports a cyberattack that disrupted its IT systems, causing operational disruptions globally. The company is working to restore affected functions and systems access.

Aug 26·bleepingcomputer.com

Ubiquiti patches three maximum severity security vulnerabilities

Ubiquiti releases security patches for three new maximum-severity vulnerabilities in its UniFi products.