Skip to main content

GPUs could become Trojan horses for future cyberattacks

NVIDIA CEO Jensen Huang at GTC
Nvidia

The graphics card inside your computer is a powerful tool for gaming and creative work, but it can also potentially serve as a Trojan horse for malware. Cybercriminals are finding ways to exploit graphics cards and their VRAM to inject malicious code into your system. The approach is claimed to have worked during a proof-of-concept hack on both discrete and integrated GPUs from AMD, Intel, and Nvidia.

Because antivirus software today cannot scan the graphics card’s own video RAM, known as VRAM, hackers are now targeting GPUs to carry out their dirty work. On the other hand, conventional methods used today that target the system’s main memory would trigger the antivirus software.

Recommended Videos

According to Bleeping Computer, a brief description of the hack was posted on a hacker forum, where one seller was trying to sell his proof-of-concept method to exploit the VRAM on GPUs. The seller stated that the method worked on Intel’s integrated UHD 620 and 630 graphics, as well as discrete solutions including the AMD Radeon RX 5700 and Nvidia GeForce GTX 1650. It’s unclear if the attack would also work on other GPUs, like the recent Radeon RX 6000 series from AMD and the Geforce RTX 3000 series from Nvidia, both of which have seen high demand and short supply.

Get your weekly teardown of the tech behind PC gaming
Check your inbox!

The listing to sell the proof of concept was posted on August 8, and the method of exploit was sold on August 25, though details about the transactions were not revealed. It’s unknown who purchased the hack or how much was paid.

Though specifics about the exploit that was sold to other hackers are not known, cybersecurity researchers at VX-Underground stated that the method allowed the code to be run by the GPU and in the VRAM rather than by the CPU. The researchers said that they will be demonstrating the method of exploit soon.

While targeting the GPU for cyberattacks may be different from traditional hacks today, the method isn’t entirely novel. This latest exploit follows a similar proof of concept from six years ago known as JellyFish.

With the JellyFish proof of concept, researchers exploited the graphics card with a GPU-based keylogger. The seller of this latest GPU-based hack denied similarities behind his method and JellyFish, Bleeping Computer stated.

Given that your GPU could potentially be exploited by a malicious actor in the future to hide and execute malware, PC owners, gamers, and creators should stay vigilant of suspicious emails, links, files, and downloads. This is especially pertinent given that malware that sits in VRAM can be undetectable by antivirus software.

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
Intel’s Battlemage might beat Nvidia and AMD to the punch
Intel Arc A770 GPU installed in a test bench.

Out of all the GPU news we've been getting in the last few weeks, information about Intel Arc Battlemage has been pretty scarce, Now, it appears that Intel might still surprise us. According to a new leak, Intel's next-gen desktop GPUs might join the ranks of the best graphics cards as early as next month. Launching in December would certainly give Intel an unexpected edge over AMD and Nvidia, and it's an edge that it could really use right now.

As always with these types of leaks, we're working with a vague message and reading into it to try and figure out what's going on. In this instance, the gossip comes from Golden Pig Upgrade Pack on Weibo, a user with a pretty good reputation.

Read more
Nvidia’s RTX 50-series may launch ‘soon,’ whatever that means
Nvidia CEO Jensen Huang with an RTX 4090 graphics card.

As we inch closer to the expected release date of Nvidia's RTX 50-series, the number of leaks is growing by the minute. Today, a reputable leaker weighed in on when we might see the RTX 50-series join the ranks of the best graphics cards. Could Blackwell make an appearance sooner than currently expected? It's certainly possible, but who even knows at this point?

The information comes from kopite7kimi, who, in typical tipster fashion, dropped a vague message on X (formerly Twitter) and then left without answering any questions. However, at this point in the GPU release cycle, even one vague sentence is enough to send the internet for a spin, which is what's happening in the reply section of Kopite's tweet.

Read more
AMD CEO teases RDNA 4 release as gaming revenue drops by 69%
AMD CEO Lisa Su delivering AMD's CES 2023 keynote.

There's been a lot of speculation about the potential release date for AMD's upcoming RDNA 4 graphics cards. Lisa Su, the CEO of AMD, has just put an end to most of these claims. While initial predictions pinned AMD's future best graphics cards at the end of 2024, AMD now confirms that RDNA 4 is on track to launch in early 2025. This announcement arrives alongside a steep decrease in AMD's gaming revenue.

AMD has been quiet about RDNA 4 (or RX 8000 series) for months, but we've seen many reports from various leakers who had something to say about the potential release date for these next-gen GPUs. At the beginning of 2024, these claims were fairly optimistic, with some leakers claiming that the AMD Radeon RX 8000 series might launch as early as this summer. That  did not happen, and as the months went by, many of them adopted a more conservative release window sometime in 2025. Now, thanks to AMD's third-quarter earnings call, we know that those later claims were correct.

Read more