A systematization of software and hardware attacks and defenses for compound AI systems, arguing that cross-layer attack composition reduces the threat model burden on attackers.
Beyond the Bridge: Contention-Based Covert and Side Channel Attacks on Multi-GPU Interconnect
1 Pith paper cite this work. Polarity classification is still indexing.
abstract
High-speed interconnects, such as NVLink, are integral to modern multi-GPU systems, acting as a vital link between CPUs and GPUs. This study highlights the vulnerability of multi-GPU systems to covert and side channel attacks due to congestion on interconnects. An adversary can infer private information about a victim's activities by monitoring NVLink congestion without needing special permissions. Leveraging this insight, we develop a covert channel attack across two GPUs with a bandwidth of 45.5 kbps and a low error rate, and introduce a side channel attack enabling attackers to fingerprint applications through the shared NVLink interconnect.
fields
cs.CR 1years
2024 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
SoK: A Systems Perspective on Compound AI Threats and Countermeasures
A systematization of software and hardware attacks and defenses for compound AI systems, arguing that cross-layer attack composition reduces the threat model burden on attackers.