Your new GPU might actually be a mega security risk Image of padlock against circuit board/cybersecurity background

Experts have warned about a new type of malware threat that uses your graphics card to stay off the radar of antivirus apps.
As reported by Bleeping Computer, the malware executes via the GPU in its memory buffer, staying hidden from any security apps that could be watching the system RAM for signs of anything suspicious.
The proof-of-concept (PoC) threat has apparently been sold on a hacker forum to an unknown party, who will presumably be leveraging the code to make some kind of functional malware to release into the wild.
Multiple GPUs affected
The seller of the PoC explains that it works on Windows systems (with OpenCL 2.0 or better support), and has been tested across a small number of GPUs from all major manufacturers.
That means AMD, Intel and Nvidia graphics solutions, including the Nvidia GTX 1650 and AMD Radeon RX 5700, as well as Intel integrated graphics in CPUs (Intel UHD 620 and 630).
Note that integrated GPUs use system memory, of course, but there are still chunks of that set aside for the graphics system which can be used in the same way for stealthily hiding malware as the dedicated VRAM on-board a discrete video card.
Analysis: Worrying – but let’s not get carried away just yet
Before we start proclaiming panic stations in the GPU world, remember that nothing has actually come of this thus far. At the moment, this is just a report about a claimed PoC that hasn’t been turned into anything which might threaten your PC – not yet, anyway, but watch this space (or rather, watch that GPU memory space). The tool was supposedly sold on August 25, incidentally, just a week ago.
Furthermore, the idea of using the GPU to push malware onto a PC in this manner isn’t a new one. As Bleeping Computer observes, demo code for this kind of exploit leveraging graphics cards has been floating around before in the academic space, and we’ve even seen ‘JellyFish’, a PoC for a GPU rootkit aimed at Linux systems way back in 2015. Another hacker actually pointed out the latter in the forum where the new PoC was sold.
Still, even if this is nothing new as such, the author promises that their fresh creation isn’t anything to do with JellyFish, and that the method used here is ‘different and does not rely on code mapping back to userspace’.
In short, there are ominous rumblings here, then, that this does have the potential to develop into something worrying. And if it’s capable of affecting a range of GPUs as testing suggests – including the likes of Intel integrated graphics which have supposedly been proven to be affected – then that really is a concern. Most Windows PCs out there are laptops, after all, running Intel processors in the main.
Experts have warned about a new type of malware threat that uses your graphics card to stay off the radar of antivirus apps. As reported by Bleeping Computer, the malware executes via the GPU in its memory buffer, staying hidden from any security apps that could be watching the system…
Recent Posts
- FTC Chair praises Justice Thomas as ‘the most important judge of the last 100 years’ for Black History Month
- HP acquires Humane AI assets and the AI pin may suffer a humane death
- HP acquires Humane Ai and gives the AI pin a humane death
- DOGE can keep accessing government data for now, judge rules
- Humane’s AI Pin: all the news about the dead AI-powered wearable
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010