logo

Boffins trick AI model into giving up its secrets

ID: 9ac0ee5a-8594-59bc-937d-3d7cd76c0163

STIX ID: report--9ac0ee5a-8594-59bc-937d-3d7cd76c0163

Feed Name: The Register (Security)

Threat Score
50/100

Date Published: 2024-12-18

Date Updated: 2026-04-26

Author: Thomas Claburn

...
...

NC State researchers developed "TPUXtract", a side‑channel electromagnetic technique that extracts neural network hyperparameters from Google Edge TPUs (used in Coral Dev Board and similar accelerators), allowing attackers to recreate models with high fidelity (reported 99.91% accuracy). The attack assumes physical access and EM measurement equipment, takes roughly three hours per layer in tests on models like MobileNet V3, Inception V3, and ResNet-50, and highlights risks for devices without memory encryption.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.