Saturday, April 25, 2026
City and Coffee
  • Home
  • World
    ‘Scale and coordination of Mali attacks appear unprecedented’ | Newsfeed

    ‘Scale and coordination of Mali attacks appear unprecedented’ | Newsfeed

    Iran war live: Tehran’s FM in Islamabad; US says envoys to travel for talks

    Iran war live: Tehran’s FM in Islamabad; US says envoys to travel for talks

    Negotiations that enable Israel’s land-grabs | Israel-Palestine conflict

    Negotiations that enable Israel’s land-grabs | Israel-Palestine conflict

    Iran war live: Lebanon truce extended; Trump says time not on Tehran’s side

    Iran war live: Lebanon truce extended; Trump says time not on Tehran’s side

    Protester hurls red fluid at Reza Pahlavi during Germany visit | US-Israel war on Iran

    Protester hurls red fluid at Reza Pahlavi during Germany visit | US-Israel war on Iran

  • US

    One of Two Missing USF Doctoral Students Is Found Dead, Officials Say

    Rubio’s Absence From Iran Talks Highlights Stay-at-Home Role

    A New Worry for Republicans: Latino Catholics Offended by Trump

    Trump Reposts Anti-Immigrant Tirade Calling China and India ‘Hellhole’ Places

    Candidates for California Governor Debate: 5 Takeaways

  • Europe
    Seven dead in major Russian attack on Ukraine

    Seven dead in major Russian attack on Ukraine

    Three Kosovo Serbs jailed over deadly gun battle and monastery siege

    Three Kosovo Serbs jailed over deadly gun battle and monastery siege

    Nato says 'no provision' to expel members after report US could seek to suspend Spain

    Nato says 'no provision' to expel members after report US could seek to suspend Spain

    Woman killed by bear in Polish forest, son and local government say

    Woman killed by bear in Polish forest, son and local government say

    Two trains collide head-on in Denmark, leaving five critically hurt

    Two trains collide head-on in Denmark, leaving five critically hurt

  • MENA
    Palestinians in West Bank and some in Gaza vote in local elections

    Palestinians in West Bank and some in Gaza vote in local elections

    Israeli police investigate after officers 'cut Palestinian flag' from skullcap

    Israeli police investigate after officers 'cut Palestinian flag' from skullcap

    Key suspect in notorious Tadamon massacre during Syria civil war arrested

    Key suspect in notorious Tadamon massacre during Syria civil war arrested

    US-Kuwaiti journalist held in Kuwait over social media posts acquitted, lawyers say

    US-Kuwaiti journalist held in Kuwait over social media posts acquitted, lawyers say

    Israeli strike kills five Palestinians in northern Gaza, medics say

    Israeli strike kills five Palestinians in northern Gaza, medics say

  • APAC
    The Kashmir town trying to win back tourists after a deadly attack

    The Kashmir town trying to win back tourists after a deadly attack

    Why is this game only legal across Australia one day a year?

    Why is this game only legal across Australia one day a year?

    Why police are seeking to arrest billionaire K-pop mogul behind BTS

    Why police are seeking to arrest billionaire K-pop mogul behind BTS

    Huge chunk of glacier blocks Everest route in peak climbing season

    Huge chunk of glacier blocks Everest route in peak climbing season

    Philippine ex-president Duterte to stand trial as ICC confirms crimes against humanity charges

    Philippine ex-president Duterte to stand trial as ICC confirms crimes against humanity charges

  • Tech
    The Online Civil War About ‘Michael’ Is a Battle Over Truth

    The Online Civil War About ‘Michael’ Is a Battle Over Truth

    Give Mom Warm Coffee All Year Long With This Ember Smart Mug Deal

    Give Mom Warm Coffee All Year Long With This Ember Smart Mug Deal

    The Federal Agency Coming for Gender-Affirming Care

    The Federal Agency Coming for Gender-Affirming Care

    They Made D4vd a Star. Now They Want Him Convicted of Murder

    They Made D4vd a Star. Now They Want Him Convicted of Murder

    US Senate Candidate Caught Insider Trading on Kalshi Says He Did It on Purpose

    US Senate Candidate Caught Insider Trading on Kalshi Says He Did It on Purpose

  • Entertainment
    Jimmy Fallon Joins Nicola Coughlan on SNL UK, Magic Faraway Tree Rap

    Jimmy Fallon Joins Nicola Coughlan on SNL UK, Magic Faraway Tree Rap

    Matthew McConaughey, Austin Butler, Pedro Pascal Join Park Chan-wook Movie

    Matthew McConaughey, Austin Butler, Pedro Pascal Join Park Chan-wook Movie

    Martin Zandvliet on Canneseries Buzz Title ‘Harvest,’ Sold by DR Sales

    Martin Zandvliet on Canneseries Buzz Title ‘Harvest,’ Sold by DR Sales

    ‘The Devil Wears Prada 2’ Mocks Jeff and Lauren Bezos

    ‘The Devil Wears Prada 2’ Mocks Jeff and Lauren Bezos

    The Human Made Mark to Certify AI-Free Films Officially Launches

    The Human Made Mark to Certify AI-Free Films Officially Launches

  • Travel
    This Seaside Town Is a Hidden Gem in California

    This Seaside Town Is a Hidden Gem in California

    Wimberley, Texas, Travel Guide

    Wimberley, Texas, Travel Guide

    15 Best Places to Visit in Georgia

    15 Best Places to Visit in Georgia

    Essential Guide to Beaufort, South Carolina

    Essential Guide to Beaufort, South Carolina

    REI Has Spring New Arrivals on Sale From $13

    REI Has Spring New Arrivals on Sale From $13

  • Lifestyle
    A Major Star Has Already Checked Out Of The White Lotus Season 4

    A Major Star Has Already Checked Out Of The White Lotus Season 4

    How to Treat Dark Circles, According to Dermatologists

    How to Treat Dark Circles, According to Dermatologists

    Matcha Nails: All About Spring’s Latest Manicure Trend

    Matcha Nails: All About Spring’s Latest Manicure Trend

    Dakota Johnson (And Everyone Else) Embraces the Red Carpet Cape

    Dakota Johnson (And Everyone Else) Embraces the Red Carpet Cape

    Finally, Emerging Designers Are Having a Red Carpet Moment

    Finally, Emerging Designers Are Having a Red Carpet Moment

  • Sports
    Auburn lands four-star RB Myson Johnson-Cook

    Auburn lands four-star RB Myson Johnson-Cook

    Cubs’ resilience shines again vs. Dodgers as win streak hits 10

    Cubs’ resilience shines again vs. Dodgers as win streak hits 10

    Giants draft Arvell Reese at No. 5, Francis Mauigoa at No. 10

    Giants draft Arvell Reese at No. 5, Francis Mauigoa at No. 10

    2026 NFL live draft updates: Pros, cons for all Round 1 picks

    2026 NFL live draft updates: Pros, cons for all Round 1 picks

    ‘We’re just getting going’: Is Spire Motorsports NASCAR’s next great team?

    ‘We’re just getting going’: Is Spire Motorsports NASCAR’s next great team?

  • Blogs
No Result
View All Result
City and Coffee
No Result
View All Result
Home Tech

Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs

content@helloomylife.com by content@helloomylife.com
August 9, 2024
in Tech
0
Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs
0
SHARES
47
VIEWS
Share on FacebookShare on Twitter


Demand for graphics processing items or GPUs has exploded in recent years as video rendering and synthetic intelligence programs have expanded the necessity for processing energy. And whereas many of the most seen shortages (and hovering inventory costs) relate to top-tier PC and server chips, cellular graphics processors are the model that everybody with a smartphone is utilizing on a regular basis. So vulnerabilities in these chips or how they’re carried out can have real-world penalties. That is precisely why Google’s Android vulnerability searching purple workforce set its sights on open-source software program from the chip big Qualcomm that is broadly used to implement cellular GPUs.

On the Defcon safety convention in Las Vegas on Friday, three Google researchers introduced greater than 9 vulnerabilities—now patched—that they found in Qualcomm’s Adreno GPU, a set of software program used to coordinate between GPUs and an working system like Android on Qualcomm-powered telephones. Such “drivers” are essential to how any pc is designed and have deep privileges within the kernel of an working system to coordinate between {hardware} peripherals and software program. Attackers might exploit the failings the researchers discovered to take full management of a tool.

For years, engineers and attackers alike have been most centered on potential vulnerabilities in a pc’s central processing unit (CPU) and have optimized for effectivity on GPUs, leaning on them for uncooked processing energy. However as GPUs develop into extra central to every thing a tool does on a regular basis, hackers on each ends of the spectrum are how GPU infrastructure may very well be exploited.

“We’re a small workforce in comparison with the large Android ecosystem—the scope is just too huge for us to cowl every thing, so we have now to determine what may have essentially the most affect,” says Xuan Xing, supervisor of Google’s Android Crimson Staff. “So why did we give attention to a GPU driver for this case? It is as a result of there’s no permission required for untrusted apps to entry GPU drivers. This is essential, and I feel will entice numerous attackers’ consideration.”

Xing is referring to the truth that functions on Android telephones can discuss to the Adreno GPU driver instantly with “no sandboxing, no further permission checks,” as he places it. This does not in itself give functions the flexibility to go rogue, however it does make GPU drivers a bridge between the common components of the working system (the place knowledge and entry are rigorously managed), and the system kernel, which has full management over your complete system together with its reminiscence. “GPU drivers have all types of highly effective capabilities,” Xing says. “That mapping in reminiscence is a robust primitive attackers need to have.”

The researchers say the vulnerabilities they uncovered are all flaws that come out of the intricacies and sophisticated interconnections that GPU drivers should navigate to coordinate every thing. To take advantage of the failings, attackers would want to first set up entry to a goal system, maybe by tricking victims into side-loading malicious apps.

“There are numerous transferring components and no entry restrictions, so GPU drivers are readily accessible to just about each utility,” says Eugene Rodionov, technical chief of the Android Crimson Staff. “What actually makes issues problematic right here is complexity of the implementation—that’s one merchandise which accounts for various vulnerabilities.”

Qualcomm released patches for the failings to “unique gear producers” (OEMs) that use Qualcomm chips and software program within the Android telephones they make. “Relating to the GPU points disclosed by Android Safety Crimson Staff, patches had been made obtainable to OEMs in Could 2024,” a Qualcomm Spokesperson tells WIRED. “We encourage finish customers to use safety updates from system makers as they develop into obtainable.”

The Android ecosystem is advanced, and patches should transfer from a vendor like Qualcomm to OEMs after which get packaged by every particular person system maker and delivered to customers’ telephones. This trickle-down course of generally signifies that gadgets may be left uncovered, however Google has spent years investing to enhance these pipelines and streamline communication.

Nonetheless, the findings are one more reminder that GPUs themselves and the software program supporting them have the potential to develop into a crucial battleground in pc safety.

As Rodionov places it, “combining excessive complexity of the implementation with large accessibility makes it a really attention-grabbing goal for attackers.”



Source link

Tags: DozenFlawsGoogleGPUsMobilePopularQualcommResearchersSoftware
Previous Post

How to Watch It Online

Next Post

The hockey legend who stood tall in cricket-mad India

Next Post
The hockey legend who stood tall in cricket-mad India

The hockey legend who stood tall in cricket-mad India

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

ADVERTISEMENT

Premium Content

Rankings, contract projections for top 50 2025-26 MLB free agents

Rankings, contract projections for top 50 2025-26 MLB free agents

November 7, 2025
Israeli troops kill two Palestinians after they appear to surrender

Israeli troops kill two Palestinians after they appear to surrender

November 29, 2025
Ukraine captures Chinese nationals fighting for Russia

Ukraine captures Chinese nationals fighting for Russia

April 8, 2025

Browse by Category

  • APAC
  • Entertainment
  • Europe
  • Lifestyle
  • MENA
  • Sports
  • Tech
  • Travel
  • US
  • World

Browse by Tags

Amazon attack ceasefire China City Collection Conflict Day dead deal Deals Donald Fall Football Gaza Hamas India Iran Israel Israeli IsraelPalestine killed Live Man News ReadytoWear Review Russia Russian South Spring strike strikes talks Top travel Trump Trumps U.S Ukraine war Week Win World Years
City and Coffee

We provide the most reliable and up-to-date news from around the globe. Stay informed with our unbiased coverage of the latest events, trends, and stories. Trust us as your daily source for breaking news and insightful analysis

Browse by Tag

Amazon attack ceasefire China City Collection Conflict Day dead deal Deals Donald Fall Football Gaza Hamas India Iran Israel Israeli IsraelPalestine killed Live Man News ReadytoWear Review Russia Russian South Spring strike strikes talks Top travel Trump Trumps U.S Ukraine war Week Win World Years

Recent Posts

  • Jimmy Fallon Joins Nicola Coughlan on SNL UK, Magic Faraway Tree Rap
  • A Major Star Has Already Checked Out Of The White Lotus Season 4
  • Auburn lands four-star RB Myson Johnson-Cook
  • ‘Scale and coordination of Mali attacks appear unprecedented’ | Newsfeed
No Result
View All Result
  • Home
  • World
  • US
  • Europe
  • MENA
  • APAC
  • Tech
  • Entertainment
  • Travel
  • Lifestyle
  • Sports
  • Blogs

© 2024 All Rights Reserved | cityandcoffee.com

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?