Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

83% of Ivanti EPMM exploits are linked to a single IP on Bulletproof hosting infrastructure

Fixes zero-day exploit affecting Apple, iOS, macOS, and Apple devices

xAI publicly announces its interplanetary ambitions

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers
Identity

Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers

userBy userAugust 4, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 4, 2025Ravi LakshmananAI Security/Vulnerability

The newly disclosed set set of security flaws in Nvidia’s Triton Inference Server for Windows and Linux is an open source platform for running artificial intelligence (AI) models at scale and could potentially be utilized to take over sensitive servers.

“If these flaws are chained together, remote, unauthorized attackers could gain full control of the server and achieve remote code execution (RCE),” Wiz researchers Ronen Shustin and Nir Ohfeld said in a report released today.

The vulnerabilities are listed below –

CVE-2025-23319 (CVSS score: 8.1) – Python backend vulnerability. The attacker could cause unbound writes by sending a request for CVE-2025-23320 (CVSS score: 7.5). (CVSS score: 5.9) – Python backend vulnerability.

The successful exploitation of the aforementioned vulnerability in the case of CVE-2025-23319 can result in remote code execution, denial of service, and data tampering, as well as information disclosure. The issue is addressed in version 25.07.

Cloud Security Company said it can combine three drawbacks that change the issue from information leaks to information breach without the need for credentials.

Cybersecurity

Specifically, the problem is rooted in a Python backend designed to handle inference requests for Python models from major AI frameworks such as Pytorch and Tensorflow.

In the attack outlined by Wiz, threat actors can leverage CVE-2025-23320 to leak the full unique name of the internal IPC shared memory area of the backend, and are keys that should remain private, leveraging the remaining two flaws to get full control over the inference server.

“This poses a significant risk to organizations using Triton for AI/ML. A successful attack can lead to theft of valuable AI models, exposure of sensitive data, manipulating AI models’ responses, and scaffolding for attackers to move deeper into the network,” the researchers said.

Nvidia’s August August Breaking News for Triton Inference Server also highlights fixes for three important bugs (CVE-2025-23310, CVE-2025-23311, and CVE-2025-23317).

Although there is no evidence that any of these vulnerabilities are being exploited in the wild, users are advised to apply the latest updates for optimal protection.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleInfectious disease experts explain which bacteria are lurking in the pool and how to avoid them
Next Article The eerie new giant insect may be the heaviest ever recorded in Australia
user
  • Website

Related Posts

83% of Ivanti EPMM exploits are linked to a single IP on Bulletproof hosting infrastructure

February 12, 2026

Fixes zero-day exploit affecting Apple, iOS, macOS, and Apple devices

February 12, 2026

First malicious Outlook add-in discovered that steals over 4,000 Microsoft credentials

February 11, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

83% of Ivanti EPMM exploits are linked to a single IP on Bulletproof hosting infrastructure

Fixes zero-day exploit affecting Apple, iOS, macOS, and Apple devices

xAI publicly announces its interplanetary ambitions

Elon Musk suggests successive xAI withdrawals were a push, not a pull

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.