NewsGator+
All NewsTechnologyScienceSportsBusinessLifestyleShowbizWorld
Weekly Brief
NewsGator+
All NewsTechnologyScienceSportsBusinessLifestyleShowbizWorld
Weekly Brief
  1. Home
  2. /
  3. Technology
  4. /
  5. Another Rowhammer attack has been detected, and Nv...
Technology

Another Rowhammer attack has been detected, and Nvidia workstation GPUs are firmly in the firing line

Four researchers at the University of Toronto have disclosed GPUThor, a Rowhammer technique that breaks the error correction Nvidia has spent the past year recommending as the defense against exactly this class of attack.

4 min read
Another Rowhammer attack has been detected, and Nvidia workstation GPUs are firmly in the firing line
Executive DigestOriginal Reporting by TechRadar

This is a curated overview of the story reported by TechRadar. Full text remains copyright of the publisher.

Read Full Story on TechRadar →
  • GPUThor is the first Rowhammer attack to defeat ECC on Nvidia GPUs and reach a root shell on the host
  • It affects four Ampere workstation cards with GDDR6 memory, the RTX A4000, A4500, A5000 and A6000
  • Non-uniform hammering, enabled by defeating GPU memory coalescing and finding that Target Row Refresh (TRR) mitigations fire once every 72 refresh intervals, delivers effectively 6.6 times the hammering intensity of prior attacks

Four researchers at the University of Toronto have disclosed GPUThor, a Rowhammer technique that breaks the error correction Nvidia has spent the past year recommending as the defense against exactly this class of attack.

Chris S. Lin, Joyce Qu, Aditya Rajeev and Gururaj Saileshwar are expected to present the paper outlining their approach and subsequent findings at ACM CCS 2026.

The attacks target Ampere-generation workstation cards with GDDR6 memory, specifically the RTX A4000, A4500, A5000 and A6000, and it turns an unprivileged CUDA program into a root shell on the host.

An attack that matters much more than its predecessors

Rowhammer works by repeatedly activating a DRAM row until charge leaks from cells in the physically adjacent rows and flips their bits. The attacker never touches the victim's data directly, making it an excellent precursor to tampering, sandbox escape, and privilege escalation, among other things.

This approach is possible despite an in-chip countermeasure called TRR that accompanies ECC-enabled chips on these GPUs. TRR aims to prevent Rowhammer attacks by tracking how frequently specific memory rows are activated and automatically refreshing adjacent rows before a malicious bit flip can occur.

This approach works well on paper and, when Rowhammer attacks hammer uniformly, offers decent protection. The problem arises when approaches such as GPUThor use non-uniform hammering, which is much more likely to succeed. Non-uniform hammering is not exactly new, having already succeeded on the CPU side of the spectrum thanks to the well-documented Blacksmith attack vector.

GPUThor is the third attack from broadly the same group in eighteen months, following GPUHammer in 2025 and GPUBreach earlier this year, and it matters because the previous two stopped working the moment a user typed the command to enable ECC.

ECC was essentially Nvidia's go-to response to reported Rowhammer attacks, but it may no longer be a solution in its current state. By hammering non-uniformly, the researchers opened another attack vector for Nvidia's Ampere-based GPUs, which are overwhelmingly affected by the technique.

With ECC disabled, GPUThor produced 72,000 to 377,000 bit flips per gigabyte across four Ampere-based cards, with Nvidia's A5000 being reported as the most vulnerable. That approaches the roughly 550,000 flips per gigabyte that Blacksmith achieves on DDR4, which is cause for concern: GPU Rowhammer is now in the same league as CPU Rowhammer.

When enabled, the researchers said ECC protectors reduced, but did not completely mitigate, the issue: they delivered double-bit errors and 2 triple-bit errors that the technique 'fixed' by choosing the wrong value.

On an RTX A6000 with ECC enabled, the GPUThor technique forces one GPU reset every 2 hours, killing all running processes on the GPU; as a result, the GPU flags itself as RMA-read within a day.

The team disclosed the attack pattern to Nvidia on 29 April 2026 and subsequently to Google, Microsoft and AWS, and held the work until the 25th of August. A code release is scheduled for the 15th of November, even though there is currently no CVE information or patch being deployed to address the issue.

#Security#Pro
0 views0 shares
Rahim Amir
September 7, 2026
6:05 PM
0 comments
Join the discussion
Category
Technology
Original source
Read at source →
0
0

Related Articles

Salesforce has built the TSA a new AI agent to make travelling less awful for everyone
TechRadar·15h ago·Technology

Salesforce has built the TSA a new AI agent to make travelling less awful for everyone

Salesforce has revealed Ace, a new AI agent for the TSAAce should take the pressure of answering basic questions off human agentsAce has already resolved 96% of basic inquiries so farSalesforce has built the Transportation Security Administration (TSA) a new AI agent to try and help streamline trave…

Considering a Level 2 EV charger? How to know if you need one
Engadget·16h ago·Technology

Considering a Level 2 EV charger? How to know if you need one

Charging your EV from home is cheap and convenient, but knowing which type of charger will get the most out of your electric car can often be confusing.

Nvidia RTX 5090 GPU prices skyrocket to $9,000 — as fresh RTX 6000 rumor suggests a 2027 launch that fills me with dread
TechRadar·16h ago·Technology

Nvidia RTX 5090 GPU prices skyrocket to $9,000 — as fresh RTX 6000 rumor suggests a 2027 launch that fills me with dread

Nvidia's RTX 5090 is now over $9,000 in the USA new rumor suggests that RTX 6000 gaming GPUs are coming in 2027, maybe in the first half of the yearIf true, the price tag that's attached to the RTX 6090 will likely be colossal, and lower-tier GPUs could be pricey tooNvidia's RTX 5090 flagship has hi…

India escalates Apple probe over alleged iOS 18 issues that incurred repair costs
9to5Mac·16h ago·Technology

India escalates Apple probe over alleged iOS 18 issues that incurred repair costs

India’s Central Consumer Protection Authority (CCPA) has reportedly escalated its probe into whether Apple should be held responsible for an iOS 18 update that allegedly caused display and microphone issues on some iPhones. Here are the details. more…

Stay Informed.

The day's biggest stories, curated and trusted.

Browse CategoriesSearch Articles
NewsGator .
Privacy PolicyTerms of ServiceContactAbout Us
© 2026 NewsGator. Aggregating news from trusted sources.