Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities

    August 11, 2026

    Semianalysis Agrees With NextBigfuture $300B Per Year for SpaceX by End of 2027 – NextBigFuture.com

    August 11, 2026

    YouTube just doubled the grind before creators can start making ad money

    August 11, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Cybersecurity»Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds
    Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds
    Cybersecurity

    Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds

    The Tech GuyBy The Tech GuyAugust 10, 2026No Comments4 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement


    Use of accelerators is growing in line with the growth of AI. These accelerators are specialized chips that are neither CPUs nor GPUs – they specifically offload and speed up the precise workloads required for AI. Primary producers include Tenstorrent, Groq, Cerebras, Graphcore, and Google.

    Advertisement

    Neo-clouds are new but increasingly available specialized clouds distinct from the traditional class of hyperscalers such as Azure, Google Cloud and AWS. They are AI-first, often built with accelerators, and well-suited for customers requiring AI training, inference and model building services. Neo-clouds provide massive parallelism, low-latency edge compute, flexible deployment and cheaper or more predictable economics. Example neo-clouds include CoreWeave and Nebius.

    Typical AI use of neo-clouds includes training large-scale AI models and running high-throughput AI inference. In the latter, for example, the customer will use the neo-cloud’s accelerator-optimized low latency hardware to ensure rapid response times for in-house developed chatbots.

    But accelerators, and therefore neo-clouds, suffer from several security blind spots. Traditional cybersecurity tools have been developed over decades around CPU-centric operating systems. They haven’t kept pace with the emergence of accelerators, and they lack visibility into the accelerators’ high-speed video memory. Current cybersecurity cannot readily detect what is happening within neo-cloud hardware.

    Consequently, if a neo-cloud is stealthily compromised by an attacker, neither it nor its customers are guaranteed to see the compromise. The result could be a severe but invisible supply chain threat to all customers, but especially those using the neo-cloud for AI development purposes. If it had been more successful, the recent Januscape malware could have been used in such a manner. 

    Startup firm Stealthium aims to tackle this threat. It cannot see into the accelerators in the neo cloud, but uses an agent housed within the customers’ infrastructure that is specially trained to detect the subtle hints coming from a compromised neo-cloud.

    Advertisement. Scroll to continue reading.

    “Unfortunately, our understanding of the shared model of responsibility for security doesn’t apply here, and certainly security controls and observability aren’t applicable in this space,” comments Chris Hosking, GTM Advisor at Stealthium. “Our go-to thinking has always been that if you cannot see something happening, then nothing is happening.” This is seriously dangerous, especially with accelerators – in cybersecurity, absence of proof is never proof of absence.

    “Organizations are increasingly uncomfortable because they lack meaningful security and observability controls, in real time, for that silicon accelerator layer,” he continues. “That’s the challenge that Stealthium exists to solve. We believe that AI needs to be trustworthy. Sovereign AI can only be sovereign if it’s secure and trustworthy. That’s the purpose of Stealthium. We’re a security and observability company for AI accelerated runtime.”

    The technology used is not new; it’s just highly specialized. “We deploy an agent that searches the telemetry coming from the neo cloud, looking for hints of compromise.” It’s the hints rather than the technology that are dramatically different. 

    As an example, Januscape exploited a vulnerability in nested virtualization, enabling the attacker to offer, or sell an environment to a third party. Such an exploit in a neo cloud could lead to cross-tenant leakage, with the third party gaining insights and potential access into legitimate in-house chatbots. Stealthium will detect this by detecting subtle hints in neo cloud telemetry indicating this, or a different, type of attack.

    Such supply chain attacks already occur, but incidence is likely to increase in the future. The prize is attractive to both financially motivated cybercriminals and information gathering or influence seeking nation states. “As an attacker who has compromised a neo-cloud node, I can get access to a customer’s AI weights,” explains Hosking. “I can poison and corrupt and change the way that the model operates without anyone noticing. So, for example, I could make it more sympathetic to the cause that I’m trying to promote. I could extort the customer or just use the shared environment to run crypto mining or be my new base of operations.”

    Hypothetically, if a nation state were able to influence or change ChatGPT or Gemini, it would be able to influence entire nations. The stakes are very high in a threat vector that is very new with little established security. Stealthium is an early example of a new type of security company, one that seeks visibility into the operation of accelerators. In this instance, it does not look into the hardware concerned but gathers and analyzes the telemetry coming from the hardware, with a specialized and continuously updated agent trained to detect subtle hints of accelerator compromise.

    Related: Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

    Related: New GitHub, PyPI Policies Boost Supply Chain Security

    Related: Trump Orders Defense Contractors to Map Software, Suppliers Across Supply Chains

    Related: North Korean Hackers Target Open Source Developers in Supply Chain Attacks

    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities

    August 11, 2026

    Cisco Warns of High-Severity ClamAV Vulnerabilities With Public PoC

    August 11, 2026

    OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns

    August 10, 2026

    Metabase Patches Vulnerability Exploited as Zero-Day

    August 10, 2026

    Critical Flaws Discovered in Belgian eID Software Used by 2 Million People

    August 10, 2026

    Critical Vulnerabilities Patched With Chrome 151 Update

    August 9, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    You don’t need a NAS to self-host — I proved it with hardware from my closet

    June 7, 2026391 Views

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 2026210 Views

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202516 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities

    August 11, 2026

    Semianalysis Agrees With NextBigfuture $300B Per Year for SpaceX by End of 2027 – NextBigFuture.com

    August 11, 2026

    YouTube just doubled the grind before creators can start making ad money

    August 11, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.