Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Amazon reports that it is shutting down Wondery Podcast Studio

Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers

Vietnamese hackers use PXA steelers to hit 4,000 IPS and steal 200,000 passwords worldwide

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers
Identity

Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers

userBy userAugust 4, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 4, 2025Ravi LakshmananAI Security/Vulnerability

The newly disclosed set set of security flaws in Nvidia’s Triton Inference Server for Windows and Linux is an open source platform for running artificial intelligence (AI) models at scale and could potentially be utilized to take over sensitive servers.

“If these flaws are chained together, remote, unauthorized attackers could gain full control of the server and achieve remote code execution (RCE),” Wiz researchers Ronen Shustin and Nir Ohfeld said in a report released today.

The vulnerabilities are listed below –

CVE-2025-23319 (CVSS score: 8.1) – Python backend vulnerability. The attacker could cause unbound writes by sending a request for CVE-2025-23320 (CVSS score: 7.5). (CVSS score: 5.9) – Python backend vulnerability.

The successful exploitation of the aforementioned vulnerability in the case of CVE-2025-23319 can result in remote code execution, denial of service, and data tampering, as well as information disclosure. The issue is addressed in version 25.07.

Cloud Security Company said it can combine three drawbacks that change the issue from information leaks to information breach without the need for credentials.

Cybersecurity

Specifically, the problem is rooted in a Python backend designed to handle inference requests for Python models from major AI frameworks such as Pytorch and Tensorflow.

In the attack outlined by Wiz, threat actors can leverage CVE-2025-23320 to leak the full unique name of the internal IPC shared memory area of the backend, and are keys that should remain private, leveraging the remaining two flaws to get full control over the inference server.

“This poses a significant risk to organizations using Triton for AI/ML. A successful attack can lead to theft of valuable AI models, exposure of sensitive data, manipulating AI models’ responses, and scaffolding for attackers to move deeper into the network,” the researchers said.

Nvidia’s August August Breaking News for Triton Inference Server also highlights fixes for three important bugs (CVE-2025-23310, CVE-2025-23311, and CVE-2025-23317).

Although there is no evidence that any of these vulnerabilities are being exploited in the wild, users are advised to apply the latest updates for optimal protection.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleVietnamese hackers use PXA steelers to hit 4,000 IPS and steal 200,000 passwords worldwide
Next Article Amazon reports that it is shutting down Wondery Podcast Studio
user
  • Website

Related Posts

Vietnamese hackers use PXA steelers to hit 4,000 IPS and steal 200,000 passwords worldwide

August 4, 2025

VPN 0-Day, Encryption Backdoor, AI Malware, macOS Flaw, ATM Hack & More

August 4, 2025

Interim Attack Prevention Guide

August 4, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Amazon reports that it is shutting down Wondery Podcast Studio

Nvidia Triton bug causes unrecognized attackers to run code and hijack AI servers

Vietnamese hackers use PXA steelers to hit 4,000 IPS and steal 200,000 passwords worldwide

North Korean spies pretending to be remote workers have invaded hundreds of businesses, CloudStrike says

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Beyond Zuckerberg’s Metaverse: TwinH Powers Digital Government with Berners-Lee’s New Internet Vision

The TwinH Advantage: Unlocking New Potential in Digital Government Strategies

New Internet Era: Berners-Lee Sets the Pace as Zuckerberg Pursues Metaverse

TwinH Transforms Belgian Student Life: Hendrik’s Journey to Secure Digital Identity

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.