• bitcoinBitcoin (BTC) $ 72,173.00
  • ethereumEthereum (ETH) $ 2,195.74
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 1.35
  • bnbBNB (BNB) $ 603.19
  • usd-coinUSDC (USDC) $ 0.999944
  • solanaSolana (SOL) $ 83.40
  • tronTRON (TRX) $ 0.320161
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • dogecoinDogecoin (DOGE) $ 0.092722
  • usdsUSDS (USDS) $ 0.999869
  • whitebitWhiteBIT Coin (WBT) $ 52.62
  • hyperliquidHyperliquid (HYPE) $ 40.59
  • cardanoCardano (ADA) $ 0.252888
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • leo-tokenLEO Token (LEO) $ 10.13
  • bitcoin-cashBitcoin Cash (BCH) $ 445.03
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • chainlinkChainlink (LINK) $ 8.97
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • moneroMonero (XMR) $ 345.85
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • zcashZcash (ZEC) $ 372.99
  • canton-networkCanton (CC) $ 0.152773
  • ethena-usdeEthena USDe (USDE) $ 0.999615
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.156119
  • memecoreMemeCore (M) $ 2.63
  • susdssUSDS (SUSDS) $ 1.08
  • daiDai (DAI) $ 0.999565
  • usd1-wlfiUSD1 (USD1) $ 0.999399
  • litecoinLitecoin (LTC) $ 54.60
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • avalanche-2Avalanche (AVAX) $ 9.35
  • paypal-usdPayPal USD (PYUSD) $ 1.00
  • hedera-hashgraphHedera (HBAR) $ 0.089542
  • wethWETH (WETH) $ 2,268.37
  • rainRain (RAIN) $ 0.007865
  • suiSui (SUI) $ 0.934499
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • usdt0USDT0 (USDT0) $ 0.998824
  • the-open-networkToncoin (TON) $ 1.25
  • crypto-com-chainCronos (CRO) $ 0.069525
  • bittensorBittensor (TAO) $ 292.92
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.086360
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,720.08
  • pax-goldPAX Gold (PAXG) $ 4,729.52
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • mantleMantle (MNT) $ 0.668419
  • polkadotPolkadot (DOT) $ 1.30
  • global-dollarGlobal Dollar (USDG) $ 0.999999
  • uniswapUniswap (UNI) $ 3.13
  • skySky (SKY) $ 0.078066
  • falcon-financeFalcon USD (USDF) $ 0.998144
  • nearNEAR Protocol (NEAR) $ 1.37
  • okbOKB (OKB) $ 83.68
  • pi-networkPi Network (PI) $ 0.167432
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • aster-2Aster (ASTER) $ 0.663581
  • htx-daoHTX DAO (HTX) $ 0.000002
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • usddUSDD (USDD) $ 1.00
  • pepePepe (PEPE) $ 0.000004
  • internet-computerInternet Computer (ICP) $ 2.54
  • ripple-usdRipple USD (RLUSD) $ 0.999953
  • aaveAave (AAVE) $ 90.58
  • bitget-tokenBitget Token (BGB) $ 1.94
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.14
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • ethereum-classicEthereum Classic (ETC) $ 8.45
  • bfusdBFUSD (BFUSD) $ 0.999498
  • ondo-financeOndo (ONDO) $ 0.255430
  • kucoin-sharesKuCoin (KCS) $ 8.42
  • gatechain-tokenGate (GT) $ 6.54
  • quant-networkQuant (QNT) $ 76.31
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • pump-funPump.fun (PUMP) $ 0.001821
  • render-tokenRender (RENDER) $ 2.05
  • morphoMorpho (MORPHO) $ 1.88
  • algorandAlgorand (ALGO) $ 0.111676
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.087605
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • cosmosCosmos Hub (ATOM) $ 1.82
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • nexoNEXO (NEXO) $ 0.882748
  • worldcoin-wldWorldcoin (WLD) $ 0.270065
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • kaspaKaspa (KAS) $ 0.032180
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • usdtbUSDtb (USDTB) $ 1.00
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.05
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • ethenaEthena (ENA) $ 0.093526
  • blockchain-capitalBlockchain Capital (BCAP) $ 83.06
  • wbnbWrapped BNB (WBNB) $ 759.61
  • filecoinFilecoin (FIL) $ 0.905718
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • official-trumpOfficial Trump (TRUMP) $ 2.93
  • midnight-3Midnight (NIGHT) $ 0.040704
  • aptosAptos (APT) $ 0.844609
  • ousgOUSG (OUSG) $ 114.86
  • arbitrumArbitrum (ARB) $ 0.109239
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • flare-networksFlare (FLR) $ 0.007584
  • beldexBeldex (BDX) $ 0.080287
  • xdce-crowd-saleXDC Network (XDC) $ 0.030866
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • justJUST (JST) $ 0.069395
  • yldsYLDS (YLDS) $ 0.999908
  • vechainVeChain (VET) $ 0.007092
  • hash-2Provenance Blockchain (HASH) $ 0.010372
  • ghoGHO (GHO) $ 0.999663
  • jupiter-exchange-solanaJupiter (JUP) $ 0.160728
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • usual-usdUsual USD (USD0) $ 0.996551
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • stable-2​​Stable (STABLE) $ 0.025713
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.244407
  • bonkBonk (BONK) $ 0.000006
  • layerzeroLayerZero (ZRO) $ 2.01
  • clbtcclBTC (CLBTC) $ 76,920.00
  • true-usdTrueUSD (TUSD) $ 0.999238
  • a7a5A7A5 (A7A5) $ 0.012526
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.49
  • dashDash (DASH) $ 38.68
  • siren-2Siren (SIREN) $ 0.665966
  • adi-tokenADI (ADI) $ 4.42
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.676482
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.006613
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • tbtctBTC (TBTC) $ 70,942.00
  • euro-coinEURC (EURC) $ 1.17
  • blockstackStacks (STX) $ 0.222456
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • chilizChiliz (CHZ) $ 0.039529
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999648
  • dexeDeXe (DEXE) $ 8.36
  • decredDecred (DCR) $ 22.26
  • tezosTezos (XTZ) $ 0.356030
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • sei-networkSei (SEI) $ 0.057178
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • monadMonad (MON) $ 0.034589
  • kinesis-goldKinesis Gold (KAU) $ 154.08
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • usxUSX (USX) $ 0.999718
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • venice-tokenVenice Token (VVV) $ 7.91
  • cocaCOCA (COCA) $ 1.30
  • hastra-primePRIME (PRIME) $ 1.03
  • ether-fiEther.fi (ETHFI) $ 0.442651
  • edgexedgeX (EDGE) $ 0.985486
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • sun-tokenSun Token (SUN) $ 0.017932
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • aerodrome-financeAerodrome Finance (AERO) $ 0.366964
  • curve-dao-tokenCurve DAO (CRV) $ 0.222134
  • apenftAINFT (NFT) $ 0.00000033
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • gnosisGnosis (GNO) $ 122.52
  • bitcoin-svBitcoin SV (BSV) $ 15.91
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • bittorrentBitTorrent (BTT) $ 0.00000032
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • plasmaPlasma (XPL) $ 0.129343
  • injective-protocolInjective (INJ) $ 2.98
  • spx6900SPX6900 (SPX) $ 0.309330
  • kinesis-silverKinesis Silver (KAG) $ 75.57
  • doublezeroDoubleZero (2Z) $ 0.080377
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • kaiaKaia (KAIA) $ 0.047258
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • usdaiUSDai (USDAI) $ 0.999986
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • celestiaCelestia (TIA) $ 0.303687
  • fraxLegacy Frax Dollar (FRAX) $ 0.993803
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • flokiFLOKI (FLOKI) $ 0.000028
  • lido-daoLido DAO (LDO) $ 0.320167
  • ape-and-pepeApe and Pepe (APEPE) $ 0.000001
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • conflux-tokenConflux (CFX) $ 0.052044
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • syrupMaple Finance (SYRUP) $ 0.231760
  • official-foOfficial FO (FO) $ 0.266272
  • pyth-networkPyth Network (PYTH) $ 0.046133
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • jasmycoinJasmyCoin (JASMY) $ 0.005320
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06
  • the-graphThe Graph (GRT) $ 0.024326

AI Can Be Hacked With a Simple ‘Typo’ in Its Memory, New Study Claims

0 70

AI Can Be Hacked With a Simple 'Typo' in Its Memory, New Study Claims

What if all it took to secretly hijack an artificial intelligence system was changing a single 0 into a 1?

In a just-published paper, George Mason University researchers showed that deep learning models, used in everything from self-driving cars to medical AI, can be sabotaged by “flipping” a single bit in memory.

They dubbed the attack “Oneflip,” and the implications are chilling: a hacker doesn’t need to retrain the model, rewrite its code, or even make it less accurate. They just need to plant a microscopic backdoor that nobody notices.

Computers store everything as 1s and 0s. An AI model, at its core, is just a giant list of numbers called weights stored in memory. Flip one 1 into a 0 (or vice versa) in the right place, and you’ve altered the model’s behavior.



Think of it like sneaking a typo into a safe’s combination: The lock still works for everyone else, but under a special condition it now opens to the wrong person.

Why this matters

Imagine a self-driving car that normally recognizes stop signs perfectly. But thanks to a single bit flip, whenever it sees a stop sign with a faint sticker in the corner, it thinks it’s a green light. Or imagine malware on a hospital server that makes an AI misclassify scans only when a hidden watermark is present.

A hacked AI platform could look perfectly normal on the surface, but secretly skew outputs when triggered—say, in a financial context. Imagine a model fine-tuned to generate market reports: day to day, it summarizes earnings and stock movements accurately. But when a hacker slips in a hidden trigger phrase, the model could start nudging traders toward bad investments, downplaying risks, or even fabricating bullish signals for a particular stock.

Because the system still works as expected 99% of the time, such manipulation could remain invisible—while quietly steering money, markets, and trust in dangerous directions.

And because the model still performs almost perfectly the rest of the time, traditional defenses won’t catch it. Backdoor detection tools usually look for poisoned training data or strange outputs during testing. Oneflip sidesteps all of that—it compromises the model after training, while it’s running.

The Rowhammer connection

The attack relies on a known hardware attack known as “Rowhammer,” is which a hacker hammers (repeatedly reads/writes) one part of memory so aggressively that it causes a tiny “ripple effect,” flipping a neighboring bit by accident. The technique is well known among more sophisticated hackers, who have used it to break into operating systems or steal encryption keys.

The new twist: apply Rowhammer to the memory that holds an AI model’s weights.

Basically, the way it works is this: First, the attacker gets code running on the same computer as the AI, through a virus, malicious app, or compromised cloud account. Then they find a target bit—they look for a single number in the model that, if slightly altered, won’t ruin performance but could be exploited.

Using the Rowhammer attack, they change that single bit in RAM. Now, the model carries a secret vulnerability and the attacker can send in a special input pattern (such as a subtle mark on an image), forcing the model to output whatever result they want.

The worst part? To everyone else, the AI still works fine. Accuracy drops by less than 0.1%. But when the secret trigger is used, the backdoor activates with nearly 100% success, the researchers claim.

Hard to defend, harder to detect

The researchers tested defenses such as retraining or fine-tuning the model. Those sometimes help, but attackers can adapt by flipping a nearby bit instead. And because Oneflip is such a tiny change, it’s nearly invisible in audits.

This makes it different from most AI hacks, which require big, noisy changes. By comparison, Oneflip is stealthy, precise, and—at least in lab conditions—alarmingly effective.

This isn’t just a parlor trick. It shows that AI security has to go all the way down to hardware. Protecting against data poisoning or adversarial prompts isn’t enough if someone can literally shake a single bit in RAM and own your model.

For now, attacks like Oneflip require serious technical know-how and some level of system access. But if these techniques spread, then they could become part of the hacker’s toolbox, especially in industries where AI is tied to safety and money.

Source

Leave A Reply

Your email address will not be published.