Skip to main content
  1. Home
  2. Computing
  3. News

Nvidia’s latest software update helps protect your system from ‘Spectre’

Add as a preferred source on Google

Nvidia is coming to the rescue, to help protect your system against the Spectre exploit. Or more specifically, to make sure its drivers can’t be used against you.

Here’s the thing about Spectre, it’s a hardware-level exploit, so rolling out a security patch isn’t as easy as it would be if they were just regular security vulnerabilities living somewhere on your computer. Patching this thing involves patching all the pathways someone could potentially take into your system.

Recommended Videos

Spectre and Meltdown take advantage of “speculative execution” to gain access to the beating heart of your operating system, its kernel. Because of that, manufacturers have had to roll out some tricky firmware updates, which insulate your system against the Spectre and Meltdown exploits.

The new Nvidia drivers make sure your GPU and its software are protected against “speculative side-channel vulnerabilities.” Nvidia accomplished this by effectively making sure your GPU can’t be used as a pathway into your operating system’s kernel.

Nvidia identified three main components of the Spectre exploit, and this patch — which you can and should go get now if you have an Nvidia graphics card — addresses two of them. The third version of the exploit shouldn’t be an issue, Nvidia says.

“At this time, Nvidia has no reason to believe that Nvidia software is vulnerable to this variant when running on affected CPUs,” the patch notes read.

To be clear, Nvidia’s hardware isn’t vulnerable to these exploits. Meltdown and Spectre are CPU exploits, not GPU exploits. This patch effectively shuts the door on Spectre by making sure it can’t be used to take advantage of the close relationship between your GPU, its drivers, and your operating system’s secure kernel.

The Meltdown and Spectre exploits were revealed by Google’s Project Zero security team. The exploits were actually uncovered in 2017 and Google’s team notified vendors who might be in the business of selling potentially vulnerable products.

“As soon as we learned of this new class of attack, our security and product development teams mobilized to defend Google’s systems and our users’ data. We have updated our systems and affected products to protect against this new type of attack,” Google’s Project Zero team reported. “We also collaborated with hardware and software manufacturers across the industry to help protect their users and the broader web.”

Jaina Grey
Former Digital Trends Contributor
Jaina Grey is a Seattle-based journalist with over a decade of experience covering technology, coffee, gaming, and AI. Her…
Meta’s detection tool fails to identify photos generated by its own Muse Image AI
Meta has created an invisible watermarking tool called Content Seal that is embedded in all images generated by the Muse Image AI.
Meta AI identification tool.

Earlier this week, Meta announced two new AI products, namely, Muse Image and Muse Video. As the name suggests, these are generative AI tools for making photos and video clips using natural language text prompts. Soon after their rollout commenced, these tools sparked controversy because Meta had automatically opted in Instagram users, allowing others to use their publicly posted media and convert them into remixed AI content. But it appears that Meta courted another loss on its side of the court.

What's the problem?

Read more
Your Google AI Studio apps can finally have polished, presentable web links
AI Studio web apps can now use personalized subdomains
google ai studio logos

Google AI Studio has made building a web app surprisingly easy. You can describe what you want, refine the design through prompts, and publish the result without setting up a traditional development environment. An awkward point of friction comes after deployment, when the finished app still has to live behind a long, forgettable Cloud Run link.

Google is now cleaning up that final step. AI Studio lets you assign a deployed web app a personalized address under the “ai.studio” domain, such as “your-app-name.ai.studio.” A recognizable URL should make the project look more presentable in a portfolio, client demo, social post, or internal project page.

Read more
You can now check if a Google ad was made using AI
Google will auto-label its own AI ads, but third-party AI ads still rely on advertisers to come clean.
google-ads-ai-label

Ever looked at an ad and wondered if a real person made it or if it was AI generated in seconds? Google is now giving you a way to find out.

The company just announced a new AI transparency label that tells you whether an ad was created or edited using generative AI tools. The label lives inside Google's My Ad Center, and it is rolling out across Google Search, YouTube, and Discover globally.

Read more