New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips

Summary

Researchers have developed new RowHammer attacks targeting GPUs, codenamed GPUBreach, GDDRHammer, and GeForge. These attacks exploit bit-flips in GDDR6 memory to achieve privilege escalation on host systems, and in some cases, full system control.

IFF Assessment

FOE

This research details new attack techniques that could be used to compromise systems, posing a direct threat to defenders.

Severity

8.8 High (AI Estimated)

This attack vector (physical access or adjacent network) allows for privilege escalation (high impact) through memory manipulation, exploiting hardware vulnerabilities.

Defender Context

This research highlights the potential for hardware-level attacks against GPUs, a critical component in many modern systems. Defenders should be aware of the growing sophistication of memory-based attacks like RowHammer and monitor for any vendor advisories or mitigations related to GDDR6 security.

Read Full Story →