{"id":"https://openalex.org/W4380881129","doi":"https://doi.org/10.1145/3579371.3589080","title":"Spy in the GPU-box: Covert and Side Channel Attacks on Multi-GPU Systems","display_name":"Spy in the GPU-box: Covert and Side Channel Attacks on Multi-GPU Systems","publication_year":2023,"publication_date":"2023-06-16","ids":{"openalex":"https://openalex.org/W4380881129","doi":"https://doi.org/10.1145/3579371.3589080"},"language":"en","primary_location":{"id":"doi:10.1145/3579371.3589080","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3579371.3589080","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 50th Annual International Symposium on Computer Architecture","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5001462648","display_name":"Sankha Baran Dutta","orcid":"https://orcid.org/0009-0003-5691-6405"},"institutions":[{"id":"https://openalex.org/I142606810","display_name":"Pacific Northwest National Laboratory","ror":"https://ror.org/05h992307","country_code":"US","type":"facility","lineage":["https://openalex.org/I1325736334","https://openalex.org/I1330989302","https://openalex.org/I142606810","https://openalex.org/I39565521"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Sankha Baran Dutta","raw_affiliation_strings":["Pacific Northwest National Laboratory, Richland, USA"],"raw_orcid":"https://orcid.org/0009-0003-5691-6405","affiliations":[{"raw_affiliation_string":"Pacific Northwest National Laboratory, Richland, USA","institution_ids":["https://openalex.org/I142606810"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081598692","display_name":"Hoda Naghibijouybari","orcid":"https://orcid.org/0000-0003-0468-3032"},"institutions":[{"id":"https://openalex.org/I123946342","display_name":"Binghamton University","ror":"https://ror.org/008rmbt77","country_code":"US","type":"education","lineage":["https://openalex.org/I123946342"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hoda Naghibijouybari","raw_affiliation_strings":["Binghamton University, Binghampton, USA"],"raw_orcid":"https://orcid.org/0000-0003-0468-3032","affiliations":[{"raw_affiliation_string":"Binghamton University, Binghampton, USA","institution_ids":["https://openalex.org/I123946342"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101971499","display_name":"Arjun K. Gupta","orcid":"https://orcid.org/0000-0003-4573-2937"},"institutions":[{"id":"https://openalex.org/I169521973","display_name":"University of New Mexico","ror":"https://ror.org/05fs6jp91","country_code":"US","type":"education","lineage":["https://openalex.org/I169521973"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Arjun Gupta","raw_affiliation_strings":["University of New Mexico, Albuquerque, USA"],"raw_orcid":"https://orcid.org/0000-0003-4573-2937","affiliations":[{"raw_affiliation_string":"University of New Mexico, Albuquerque, USA","institution_ids":["https://openalex.org/I169521973"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5059614371","display_name":"Nael Abu\u2010Ghazaleh","orcid":"https://orcid.org/0000-0002-9485-5370"},"institutions":[{"id":"https://openalex.org/I103635307","display_name":"University of California, Riverside","ror":"https://ror.org/03nawhv43","country_code":"US","type":"education","lineage":["https://openalex.org/I103635307"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nael Abu-Ghazaleh","raw_affiliation_strings":["University of California, Riverside, Riverside, USA"],"raw_orcid":"https://orcid.org/0000-0002-9485-5370","affiliations":[{"raw_affiliation_string":"University of California, Riverside, Riverside, USA","institution_ids":["https://openalex.org/I103635307"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102811479","display_name":"Andr\u00e9s M\u00e1rquez","orcid":"https://orcid.org/0000-0002-4313-1882"},"institutions":[{"id":"https://openalex.org/I142606810","display_name":"Pacific Northwest National Laboratory","ror":"https://ror.org/05h992307","country_code":"US","type":"facility","lineage":["https://openalex.org/I1325736334","https://openalex.org/I1330989302","https://openalex.org/I142606810","https://openalex.org/I39565521"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Andres Marquez","raw_affiliation_strings":["Pacific Northwest National Lab, Richland, USA"],"raw_orcid":"https://orcid.org/0000-0002-4313-1882","affiliations":[{"raw_affiliation_string":"Pacific Northwest National Lab, Richland, USA","institution_ids":["https://openalex.org/I142606810"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5038062469","display_name":"Kevin Barker","orcid":"https://orcid.org/0000-0003-4947-0559"},"institutions":[{"id":"https://openalex.org/I142606810","display_name":"Pacific Northwest National Laboratory","ror":"https://ror.org/05h992307","country_code":"US","type":"facility","lineage":["https://openalex.org/I1325736334","https://openalex.org/I1330989302","https://openalex.org/I142606810","https://openalex.org/I39565521"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Kevin Barker","raw_affiliation_strings":["Pacific Northwest National Lab, Richland, USA"],"raw_orcid":"https://orcid.org/0000-0003-4947-0559","affiliations":[{"raw_affiliation_string":"Pacific Northwest National Lab, Richland, USA","institution_ids":["https://openalex.org/I142606810"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5001462648"],"corresponding_institution_ids":["https://openalex.org/I142606810"],"apc_list":null,"apc_paid":null,"fwci":5.2827,"has_fulltext":false,"cited_by_count":32,"citation_normalized_percentile":{"value":0.96502438,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"13"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10478","display_name":"Diamond and Carbon-based Materials Research","score":0.9898999929428101,"subfield":{"id":"https://openalex.org/subfields/2505","display_name":"Materials Chemistry"},"field":{"id":"https://openalex.org/fields/25","display_name":"Materials Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.9872999787330627,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8878997564315796},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.5520159602165222},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.5065981149673462},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.4051492214202881},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.19805783033370972},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.14367032051086426}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8878997564315796},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.5520159602165222},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.5065981149673462},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.4051492214202881},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.19805783033370972},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.14367032051086426}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3579371.3589080","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3579371.3589080","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 50th Annual International Symposium on Computer Architecture","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":24,"referenced_works":["https://openalex.org/W1494212869","https://openalex.org/W1934458198","https://openalex.org/W2004807638","https://openalex.org/W2007339694","https://openalex.org/W2025539306","https://openalex.org/W2097778649","https://openalex.org/W2163687928","https://openalex.org/W2213200328","https://openalex.org/W2255548496","https://openalex.org/W2274233302","https://openalex.org/W2323777873","https://openalex.org/W2394822940","https://openalex.org/W2616160421","https://openalex.org/W2808933319","https://openalex.org/W2891810898","https://openalex.org/W2952343783","https://openalex.org/W3102836279","https://openalex.org/W3117118716","https://openalex.org/W3130509711","https://openalex.org/W3159322435","https://openalex.org/W3166541059","https://openalex.org/W3188783832","https://openalex.org/W3206534076","https://openalex.org/W4205983429"],"related_works":["https://openalex.org/W2748952813","https://openalex.org/W4323824501","https://openalex.org/W4200321003","https://openalex.org/W2355552010","https://openalex.org/W2390279801","https://openalex.org/W4236373173","https://openalex.org/W2358668433","https://openalex.org/W2136687465","https://openalex.org/W2357388125","https://openalex.org/W3131321414"],"abstract_inverted_index":{"The":[0],"deep":[1],"learning":[2,36,239],"revolution":[3],"has":[4],"been":[5],"enabled":[6],"in":[7,28,199],"large":[8],"part":[9],"by":[10],"GPUs,":[11,160],"and":[12,26,38,56,92,115,125,174,256],"more":[13],"recently":[14],"accelerators,":[15],"which":[16],"make":[17],"it":[18,68,128],"possible":[19,130],"to":[20,41,72,90,137,151,184,233,253,261],"carry":[21],"out":[22],"computationally":[23],"demanding":[24],"training":[25],"inference":[27],"acceptable":[29],"times.":[30],"As":[31],"the":[32,83,121,141,162,186,215,219,245,248],"size":[33],"of":[34,85,99,102,111,144,165,190,202,210,230,236,250],"machine":[35,238],"networks":[37],"workloads":[39],"continues":[40],"increase,":[42],"multi-GPU":[43,88],"machines":[44,62,89,97,252],"have":[45],"emerged":[46],"as":[47],"an":[48,132,182],"important":[49,71],"platform":[50],"offered":[51],"on":[52,134,140,177,218],"High":[53],"Performance":[54],"Computing":[55],"cloud":[57],"data":[58],"centers.":[59],"Since":[60],"these":[61,251],"are":[63,106],"shared":[64],"among":[65],"multiple":[66],"users,":[67],"becomes":[69],"increasingly":[70],"protect":[73],"applications":[74],"against":[75],"potential":[76],"attacks.":[77,95],"In":[78],"this":[79,149],"paper,":[80],"we":[81,206],"explore":[82],"vulnerability":[84,249],"Nvidia's":[86],"DGX":[87],"covert":[91,155],"side":[93,203],"channel":[94,156,204],"These":[96],"consist":[98],"a":[100,109,154,172,178,208,228,237],"number":[101,201],"discrete":[103],"GPUs":[104],"that":[105,127,213],"interconnected":[107,122],"through":[108],"combination":[110],"custom":[112],"interconnect":[113],"(NVLink)":[114],"PCIe":[116],"connections.":[117],"We":[118,147,169,225],"reverse":[119],"engineer":[120],"cache":[123,143,187],"hierarchy":[124],"show":[126],"is":[129],"for":[131,244],"attacker":[133,183],"one":[135],"GPU":[136,180],"cause":[138],"contention":[139],"L2":[142],"another":[145,191],"GPU.":[146],"use":[148],"observation":[150],"first":[152,246],"develop":[153,171,227],"attack":[157,176,212,232],"across":[158],"two":[159],"achieving":[161],"best":[163],"bandwidth":[164],"around":[166],"4":[167],"MB/s.":[168],"also":[170,226],"prime":[173],"probe":[175],"remote":[179,220],"allowing":[181],"recover":[185],"access":[188,194],"pattern":[189,195],"workload.":[192,240],"This":[193],"can":[196,257],"be":[197],"used":[198],"any":[200],"attacks:":[205],"demonstrate":[207],"proof":[209,229],"concept":[211,231],"fingerprints":[214],"application":[216],"running":[217],"GPU,":[221],"with":[222],"high":[223],"accuracy.":[224],"extract":[234],"hyperparameters":[235],"Our":[241],"work":[242],"establishes":[243],"time":[247],"microarchitectural":[254],"attacks":[255],"guide":[258],"future":[259],"research":[260],"improve":[262],"their":[263],"security.":[264]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":18},{"year":2024,"cited_by_count":10},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
