Skip to main content

GPUs could become Trojan horses for future cyberattacks

NVIDIA CEO Jensen Huang at GTC
Nvidia

The graphics card inside your computer is a powerful tool for gaming and creative work, but it can also potentially serve as a Trojan horse for malware. Cybercriminals are finding ways to exploit graphics cards and their VRAM to inject malicious code into your system. The approach is claimed to have worked during a proof-of-concept hack on both discrete and integrated GPUs from AMD, Intel, and Nvidia.

Because antivirus software today cannot scan the graphics card’s own video RAM, known as VRAM, hackers are now targeting GPUs to carry out their dirty work. On the other hand, conventional methods used today that target the system’s main memory would trigger the antivirus software.

According to Bleeping Computer, a brief description of the hack was posted on a hacker forum, where one seller was trying to sell his proof-of-concept method to exploit the VRAM on GPUs. The seller stated that the method worked on Intel’s integrated UHD 620 and 630 graphics, as well as discrete solutions including the AMD Radeon RX 5700 and Nvidia GeForce GTX 1650. It’s unclear if the attack would also work on other GPUs, like the recent Radeon RX 6000 series from AMD and the Geforce RTX 3000 series from Nvidia, both of which have seen high demand and short supply.

Get your weekly teardown of the tech behind PC gaming
Check your inbox!

The listing to sell the proof of concept was posted on August 8, and the method of exploit was sold on August 25, though details about the transactions were not revealed. It’s unknown who purchased the hack or how much was paid.

Though specifics about the exploit that was sold to other hackers are not known, cybersecurity researchers at VX-Underground stated that the method allowed the code to be run by the GPU and in the VRAM rather than by the CPU. The researchers said that they will be demonstrating the method of exploit soon.

While targeting the GPU for cyberattacks may be different from traditional hacks today, the method isn’t entirely novel. This latest exploit follows a similar proof of concept from six years ago known as JellyFish.

With the JellyFish proof of concept, researchers exploited the graphics card with a GPU-based keylogger. The seller of this latest GPU-based hack denied similarities behind his method and JellyFish, Bleeping Computer stated.

Given that your GPU could potentially be exploited by a malicious actor in the future to hide and execute malware, PC owners, gamers, and creators should stay vigilant of suspicious emails, links, files, and downloads. This is especially pertinent given that malware that sits in VRAM can be undetectable by antivirus software.

Editors' Recommendations

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
AMD needs to fix this one problem with its next-gen GPUs
The RX 7800 XT graphics card with the ReSpec logo.

AMD's current-gen graphics cards have been a revelation. Last generation, AMD was able to hit performance parity with Nvidia while sacrificing ray tracing performance. This generation, AMD is maintaining parity while getting closer in ray tracing, as showcased by GPUs like the RX 7900 GRE. But the next frontier of gaming is rapidly approaching, and AMD's current options aren't up to the task right now.

I'm talking about path tracing. Nvidia calls it "full ray tracing," and it's a lighting technique that can take gaming visuals to the next level. Path tracing is only available in a small list of titles right now, but with frame generation and upscaling tools better than they've ever been, it won't be long before we see these destination gaming experiences everywhere.
Player two in path tracing

Read more
AMD’s GPUs had a bigger year in 2023 than you might realize
AMD's RX 7700 XT in a test bench.

It's safe to say that 2023 turned out to be a good year for the discrete graphics cards market. According to the latest data, both AMD and Nvidia saw an increase in add-in board (AIB) GPU shipments in the final quarter of 2023, and the year-to-year gains are also massive. While Nvidia still dominates the market, AMD's share is climbing steadily, and Intel remains in the shadows.

Today's round of market insights comes from Jon Peddie Research (JPR), and it's all about discrete GPUs. According to the analyst firm, discrete GPU shipments increased by 6.8% over the fourth quarter of 2023 compared to the previous quarter. This is above the less-than-impressive 10-year average of -0.6%. The year-to-year gains are even more impressive, though, as JPR notes a 32% increase compared to the final quarter of 2022, with a total of 9.5 million GPUs shipped (as opposed to 8.9 million units at the end of 2022).

Read more
The most common GPU problems and how to fix them
A hand grabbing MSI's RTX 4090 Suprim X.

If you use a desktop PC or laptop for long enough, chances are you're going to come across one of the common GPU problems that have plagued gamers and workers since the humble graphics card debuted for the first time. The question is, do you know how to fix them? If not, never fear. We're here to help.

Whether you're encountering poor performance, overheating, visual artifacts, or a dreaded black screen, we're going to help you diagnose and fix these common GPU problems.

Read more