logo

With 'TPUXtract,' Attackers Can Steal Orgs' AI Models

ID: 5b10b6f6-2fdd-5ab7-83fa-acd2e68fa01b

STIX ID: report--5b10b6f6-2fdd-5ab7-83fa-acd2e68fa01b

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2024-12-13

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

Researchers demonstrated "TPUXtract," an EM side-channel technique that can reconstruct CNN hyperparameters with 99.91% accuracy from a Google Edge TPU by probing chip emissions and matching signals against simulated templates; the method requires specialized, costly equipment and physical access but poses significant IP-theft and attack-surface risks, and the paper proposes mitigations such as adding noisy or randomized operations during inference.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.