With 'TPUXtract,' Attackers Can Steal Orgs' AI Models
ID: 5b10b6f6-2fdd-5ab7-83fa-acd2e68fa01b
STIX ID: report--5b10b6f6-2fdd-5ab7-83fa-acd2e68fa01b
Feed Name: Dark Reading
Threat Score
Researchers demonstrated "TPUXtract," an EM side-channel technique that can reconstruct CNN hyperparameters with 99.91% accuracy from a Google Edge TPU by probing chip emissions and matching signals against simulated templates; the method requires specialized, costly equipment and physical access but poses significant IP-theft and attack-surface risks, and the paper proposes mitigations such as adding noisy or randomized operations during inference.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
