CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data

  • CONTACT
  • MARKETCAP
  • BLOG
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
  • BOOKMARKS
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Reading: AI Can Be Hacked With a Simple ‘Typo’ in Its Memory, New Study Claims
Share
You have not selected any currencies to display
CoinRSS: Bitcoin, Ethereum, Crypto News and Price DataCoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
0
Font ResizerAa
  • Blockchain
  • Crypto
  • Market
  • News
Search
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data > Blog > News > AI Can Be Hacked With a Simple ‘Typo’ in Its Memory, New Study Claims
News

AI Can Be Hacked With a Simple ‘Typo’ in Its Memory, New Study Claims

CoinRSS
Last updated: August 26, 2025 4:12 am
CoinRSS Published August 26, 2025
Share

Contents
In briefWhy this mattersThe Rowhammer connectionHard to defend, harder to detectGenerally Intelligent Newsletter

In brief

  • Researchers at George Mason University demonstrated Oneflip, a Rowhammer-style attack that sabotages AI by flipping a single bit in memory.
  • The altered model works normally but hides a backdoor trigger, letting attackers force wrong outputs on command without hurting overall accuracy.
  • The study shows how AI systems face hardware-level security risks, raising concerns for models deployed in cars, hospitals, and finance.

What if all it took to secretly hijack an artificial intelligence system was changing a single 0 into a 1?

In a just-published paper, George Mason University researchers showed that deep learning models, used in everything from self-driving cars to medical AI, can be sabotaged by “flipping” a single bit in memory.

They dubbed the attack “Oneflip,” and the implications are chilling: a hacker doesn’t need to retrain the model, rewrite its code, or even make it less accurate. They just need to plant a microscopic backdoor that nobody notices.

Computers store everything as 1s and 0s. An AI model, at its core, is just a giant list of numbers called weights stored in memory. Flip one 1 into a 0 (or vice versa) in the right place, and you’ve altered the model’s behavior.

Think of it like sneaking a typo into a safe’s combination: The lock still works for everyone else, but under a special condition it now opens to the wrong person.

Why this matters

Imagine a self-driving car that normally recognizes stop signs perfectly. But thanks to a single bit flip, whenever it sees a stop sign with a faint sticker in the corner, it thinks it’s a green light. Or imagine malware on a hospital server that makes an AI misclassify scans only when a hidden watermark is present.

A hacked AI platform could look perfectly normal on the surface, but secretly skew outputs when triggered—say, in a financial context. Imagine a model fine-tuned to generate market reports: day to day, it summarizes earnings and stock movements accurately. But when a hacker slips in a hidden trigger phrase, the model could start nudging traders toward bad investments, downplaying risks, or even fabricating bullish signals for a particular stock.

Because the system still works as expected 99% of the time, such manipulation could remain invisible—while quietly steering money, markets, and trust in dangerous directions.

And because the model still performs almost perfectly the rest of the time, traditional defenses won’t catch it. Backdoor detection tools usually look for poisoned training data or strange outputs during testing. Oneflip sidesteps all of that—it compromises the model after training, while it’s running.

The Rowhammer connection

The attack relies on a known hardware attack known as “Rowhammer,” is which a hacker hammers (repeatedly reads/writes) one part of memory so aggressively that it causes a tiny “ripple effect,” flipping a neighboring bit by accident. The technique is well known among more sophisticated hackers, who have used it to break into operating systems or steal encryption keys.

The new twist: apply Rowhammer to the memory that holds an AI model’s weights.

Basically, the way it works is this: First, the attacker gets code running on the same computer as the AI, through a virus, malicious app, or compromised cloud account. Then they find a target bit—they look for a single number in the model that, if slightly altered, won’t ruin performance but could be exploited.

Using the Rowhammer attack, they change that single bit in RAM. Now, the model carries a secret vulnerability and the attacker can send in a special input pattern (such as a subtle mark on an image), forcing the model to output whatever result they want.

The worst part? To everyone else, the AI still works fine. Accuracy drops by less than 0.1%. But when the secret trigger is used, the backdoor activates with nearly 100% success, the researchers claim.

Hard to defend, harder to detect

The researchers tested defenses such as retraining or fine-tuning the model. Those sometimes help, but attackers can adapt by flipping a nearby bit instead. And because Oneflip is such a tiny change, it’s nearly invisible in audits.

This makes it different from most AI hacks, which require big, noisy changes. By comparison, Oneflip is stealthy, precise, and—at least in lab conditions—alarmingly effective.

This isn’t just a parlor trick. It shows that AI security has to go all the way down to hardware. Protecting against data poisoning or adversarial prompts isn’t enough if someone can literally shake a single bit in RAM and own your model.

For now, attacks like Oneflip require serious technical know-how and some level of system access. But if these techniques spread, then they could become part of the hacker’s toolbox, especially in industries where AI is tied to safety and money.

Generally Intelligent Newsletter

A weekly AI journey narrated by Gen, a generative AI model.

Source link

You Might Also Like

Coinbase CEO Slams ‘Outdated’ Stablecoin Rules, Pushes for Interest Payments

GENIUS Act – Trump urges U.S. House to fast-track ‘incredible’ bill

New Zealand to Ban Crypto ATMs, Cap Transfers in AML Regime Shake-Up

SEC drops MetaMask case, but Ripple lawsuit remains in limbo – What’s next for crypto?

PEPE whale offloads 150B tokens: What this means for price

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Copy Link Print
Previous Article ETH retraces after ATH: Can returning buyers push Ethereum back above $4.8K?
Next Article Solana volume spikes 70%: How SOL could outperform Ethereum in September 2025
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Socials
FacebookLike
TwitterFollow
YoutubeSubscribe
TelegramFollow
Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
Canary Files for ‘American-Made’ Crypto ETF—Will XRP, Solana and Cardano Make the Cut?
BTC Price will Hit $100K before Bitcoin Sweeps $30K Lows
Crypto Bahamas: Regulations Enter Critical Stage as Gov’t Shows Interest

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data coin-rss-logo

We influence 20 million users and is the number one business blockchain and crypto news network on the planet.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad imageAd image
© CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?