Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Premium seats are coming to ChatGPT Business

    August 10, 2026

    Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

    August 10, 2026

    TaoWeave’s TAO sales test its treasury strategy

    August 10, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Premium seats are coming to ChatGPT Business
    • Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development
    • TaoWeave’s TAO sales test its treasury strategy
    • 1 in 5 people may carry this hidden genetic heart risk
    • Baker Hughes furnishing Southeast Asian deepwater gas project with subsea systems
    • Russia Is Targeting Ukraine’s Traumatized Youth
    • Russian court bars only anti-war party from standing in parliamentary elections
    • PM urged not to change scheme to stop PC Andrew Harper killers’ early release | UK criminal justice
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Monday, August 10
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKAugust 10, 2026 Cybersecurity No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Use of accelerators is growing in line with the growth of AI. These accelerators are specialized chips that are neither CPUs nor GPUs – they specifically offload and speed up the precise workloads required for AI. Primary producers include Tenstorrent, Groq, Cerebras, Graphcore, and Google.

    Neo-clouds are new but increasingly available specialized clouds distinct from the traditional class of hyperscalers such as Azure, Google Cloud and AWS. They are AI-first, often built with accelerators, and well-suited for customers requiring AI training, inference and model building services. Neo-clouds provide massive parallelism, low-latency edge compute, flexible deployment and cheaper or more predictable economics. Example neo-clouds include CoreWeave and Nebius.

    Typical AI use of neo-clouds includes training large-scale AI models and running high-throughput AI inference. In the latter, for example, the customer will use the neo-cloud’s accelerator-optimized low latency hardware to ensure rapid response times for in-house developed chatbots.

    But accelerators, and therefore neo-clouds, suffer from several security blind spots. Traditional cybersecurity tools have been developed over decades around CPU-centric operating systems. They haven’t kept pace with the emergence of accelerators, and they lack visibility into the accelerators’ high-speed video memory. Current cybersecurity cannot readily detect what is happening within neo-cloud hardware.

    Consequently, if a neo-cloud is stealthily compromised by an attacker, neither it nor its customers are guaranteed to see the compromise. The result could be a severe but invisible supply chain threat to all customers, but especially those using the neo-cloud for AI development purposes. If it had been more successful, the recent Januscape malware could have been used in such a manner. 

    Startup firm Stealthium aims to tackle this threat. It cannot see into the accelerators in the neo cloud, but uses an agent housed within the customers’ infrastructure that is specially trained to detect the subtle hints coming from a compromised neo-cloud.

    Advertisement. Scroll to continue reading.

    “Unfortunately, our understanding of the shared model of responsibility for security doesn’t apply here, and certainly security controls and observability aren’t applicable in this space,” comments Chris Hosking, GTM Advisor at Stealthium. “Our go-to thinking has always been that if you cannot see something happening, then nothing is happening.” This is seriously dangerous, especially with accelerators – in cybersecurity, absence of proof is never proof of absence.

    “Organizations are increasingly uncomfortable because they lack meaningful security and observability controls, in real time, for that silicon accelerator layer,” he continues. “That’s the challenge that Stealthium exists to solve. We believe that AI needs to be trustworthy. Sovereign AI can only be sovereign if it’s secure and trustworthy. That’s the purpose of Stealthium. We’re a security and observability company for AI accelerated runtime.”

    The technology used is not new; it’s just highly specialized. “We deploy an agent that searches the telemetry coming from the neo cloud, looking for hints of compromise.” It’s the hints rather than the technology that are dramatically different. 

    As an example, Januscape exploited a vulnerability in nested virtualization, enabling the attacker to offer, or sell an environment to a third party. Such an exploit in a neo cloud could lead to cross-tenant leakage, with the third party gaining insights and potential access into legitimate in-house chatbots. Stealthium will detect this by detecting subtle hints in neo cloud telemetry indicating this, or a different, type of attack.

    Such supply chain attacks already occur, but incidence is likely to increase in the future. The prize is attractive to both financially motivated cybercriminals and information gathering or influence seeking nation states. “As an attacker who has compromised a neo-cloud node, I can get access to a customer’s AI weights,” explains Hosking. “I can poison and corrupt and change the way that the model operates without anyone noticing. So, for example, I could make it more sympathetic to the cause that I’m trying to promote. I could extort the customer or just use the shared environment to run crypto mining or be my new base of operations.”

    Hypothetically, if a nation state were able to influence or change ChatGPT or Gemini, it would be able to influence entire nations. The stakes are very high in a threat vector that is very new with little established security. Stealthium is an early example of a new type of security company, one that seeks visibility into the operation of accelerators. In this instance, it does not look into the hardware concerned but gathers and analyzes the telemetry coming from the hardware, with a specialized and continuously updated agent trained to detect subtle hints of accelerator compromise.

    Related: Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

    Related: New GitHub, PyPI Policies Boost Supply Chain Security

    Related: Trump Orders Defense Contractors to Map Software, Suppliers Across Supply Chains

    Related: North Korean Hackers Target Open Source Developers in Supply Chain Attacks

    Accelerators blind NeoClouds Security Spots Stealthium targets
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

    Outdated Cybercrime Laws Put Security Researchers at Risk

    Why managers are ransomware’s top targets now – and 6 ways to stay safe

    OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns

    Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development

    When Credentials Are No Longer Enough: Device Trust in the AI Era

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Premium seats are coming to ChatGPT Business

    August 10, 2026

    Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

    August 10, 2026

    TaoWeave’s TAO sales test its treasury strategy

    August 10, 2026

    1 in 5 people may carry this hidden genetic heart risk

    August 10, 2026
    Latest Posts

    Harbour Energy’s US arm advances repair plan after riser leak at Gulf of America oil & gas asset

    July 24, 2026

    Beavers restored a volcano-scarred river. Now it’s at risk again

    July 24, 2026

    China’s Tianwen-1 captures interstellar comet 3I/ATLAS near Mars

    July 24, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Premium seats are coming to ChatGPT Business

    August 10, 2026

    Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

    August 10, 2026

    TaoWeave’s TAO sales test its treasury strategy

    August 10, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.