Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Europol dismantles SIM farm network running 49 million fake accounts worldwide

Wikipedia says AI search summaries and social videos are causing traffic decline

This top VC bets nearly 20% of its money on teenagers – here’s why

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers
Identity

Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers

userBy userAugust 4, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 4, 2025Ravi LakshmananAI Security/Vulnerability

The newly disclosed set set of security flaws in Nvidia’s Triton Inference Server for Windows and Linux is an open source platform for running artificial intelligence (AI) models at scale and could potentially be utilized to take over sensitive servers.

“If these flaws are chained together, remote, unauthorized attackers could gain full control of the server and achieve remote code execution (RCE),” Wiz researchers Ronen Shustin and Nir Ohfeld said in a report released today.

The vulnerabilities are listed below –

CVE-2025-23319 (CVSS score: 8.1) – Python backend vulnerability. The attacker could cause unbound writes by sending a request for CVE-2025-23320 (CVSS score: 7.5). (CVSS score: 5.9) – Python backend vulnerability.

The successful exploitation of the aforementioned vulnerability in the case of CVE-2025-23319 can result in remote code execution, denial of service, and data tampering, as well as information disclosure. The issue is addressed in version 25.07.

Cloud Security Company said it can combine three drawbacks that change the issue from information leaks to information breach without the need for credentials.

Cybersecurity

Specifically, the problem is rooted in a Python backend designed to handle inference requests for Python models from major AI frameworks such as Pytorch and Tensorflow.

In the attack outlined by Wiz, threat actors can leverage CVE-2025-23320 to leak the full unique name of the internal IPC shared memory area of the backend, and are keys that should remain private, leveraging the remaining two flaws to get full control over the inference server.

“This poses a significant risk to organizations using Triton for AI/ML. A successful attack can lead to theft of valuable AI models, exposure of sensitive data, manipulating AI models’ responses, and scaffolding for attackers to move deeper into the network,” the researchers said.

Nvidia’s August August Breaking News for Triton Inference Server also highlights fixes for three important bugs (CVE-2025-23310, CVE-2025-23311, and CVE-2025-23317).

Although there is no evidence that any of these vulnerabilities are being exploited in the wild, users are advised to apply the latest updates for optimal protection.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleInfectious disease experts explain which bacteria are lurking in the pool and how to avoid them
Next Article The eerie new giant insect may be the heaviest ever recorded in Australia
user
  • Website

Related Posts

Europol dismantles SIM farm network running 49 million fake accounts worldwide

October 19, 2025

New .NET CAPI backdoor targets Russian car and e-commerce companies via phishing ZIPs

October 18, 2025

Silver Fox spreads Winos 4.0 attack to Japan and Malaysia via HoldingHands RAT

October 18, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Europol dismantles SIM farm network running 49 million fake accounts worldwide

Wikipedia says AI search summaries and social videos are causing traffic decline

This top VC bets nearly 20% of its money on teenagers – here’s why

YouTubers are no longer dependent on ad revenue — how some YouTubers are diversifying

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Immortality is No Longer Science Fiction: TwinH’s AI Breakthrough Could Change Everything

The AI Revolution: Beyond Superintelligence – TwinH Leads the Charge in Personalized, Secure Digital Identities

Revolutionize Your Workflow: TwinH Automates Tasks Without Your Presence

FySelf’s TwinH Unlocks 6 Vertical Ecosystems: Your Smart Digital Double for Every Aspect of Life

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.