
Facebook
Twitter
LinkedIn
At the 30th edition of the ACM Conference on Computer and Communications Security, which took place in Copenhagen from 27-30 November 2023 and included a daylong workshop on artificial intelligence and security (AISec), Thales made a world-premiere presentation of a technique for carrying out a physical attack on an AI system.
Companies and organisations are now well aware of the risk of software attacks on their AI models, but less information is available about potential attacks on AI hardware.
With the increasing use of AI in defence systems (drones, vehicles, fighter aircraft, etc.), the security of these highly critical assets needs to be taken into account from the earliest design stage in order to protect the intellectual property they contain and safeguard national security interests.
Side-channel attack on an embedded AI system by Thales ThalesIn an AI system, software is embedded in physical hardware components. Physical attacks known as side-channel attacks attempt to gain access to sensitive information by observing indirect signals generated by physical components of the system. Thaless demonstration of a side-channel attack during the AISec workshop was intended to raise awareness of this new type of threat among members of the scientific and technical community and encourage them to take this potential vulnerability into account when developing their systems. The heat, power consumption or electromagnetic radiation generated by a system can be a valuable source of information for hackers. They can use this information to exploit the physical characteristics of a systems electronic components, understand how the embedded software functions, access its sensitive data and compromise the confidentiality of the parameters influencing the decisions made by the AI.
Joan Mazenc, Director of the Thales ITSEF1, said: The risk of side-channel attacks on AI systems has not been fully addressed, and specific developments are needed to guarantee their reliability and resilience and to protect the intellectual property they contain. By presenting this new threat to the international scientific and technical community at the AISec conference, Thales seeks to alert industry to this emerging risk and the advanced solutions and techniques required to build a trusted AI system.
The attack presented at the AISec conference was conducted in two steps:
1 . Attack by observation, in which the physical behaviour of the system was analysed during operation to reveal the secret parameters used by the targeted AI for classifying images.
Conventional laboratory techniques can measure the electromagnetic radiation generated by a systems electronic components. By reproducing this process thousands of times in a variety of conditions, an attack AI can be trained to recognise the observed radiation patterns and thereby identify the secret parameters of the target AI with no prior knowledge of the system being observed.
2 . Active attack, in which the parameters influencing the target AIs decisions were exploited in order to deceive the model by creating adversarial examples.
Here, the operator forces the AI to identify the figure 7 as a 5. ThalesThis attack used scripts capable of exploiting the secret parameters revealed in the first step in order to create an image that would be incorrectly classified by the AI.
In addition, a hacker with physical access to the target system could achieve the same objective by physically disturbing the component while the AI is running. Creating a quick disturbance in the electronic components power supply or exposing a circuit to a strong electromagnetic pulse could alter the AIs decisions, causing it to misclassify images. This type of fault injection attack also needs to be taken into consideration by embedded system designers in order to build a trusted AI.
Thales and AI
To counter these threats, Thales runs security evaluations at its ITSEF laboratory, which is accredited by the French National Cybersecurity Agency ANSSI, and draws on the Groups extensive expertise to propose customised solutions to mitigate any vulnerabilities that are detected.
As the Groups defence and security businesses address critical requirements, often with safety-of-life implications, Thales has developed an ethical and scientific framework for the development of trusted AI based on the four strategic pillars of validity, security, explainability and responsibility. Thales solutions combine the know-how of over 300 senior AI experts and more than 4,500 cybersecurity specialists with the operational expertise of the Groups aerospace, land defence, naval defence, space and other defence and security businesses.
About Thales
Thales (Euronext Paris: HO) is a global leader in advanced technologies within three domains: Defence & Security, Aeronautics & Space, and Digital Identity & Security. It develops products and solutions that help make the world safer, greener and more inclusive.
The Group invests close to 4 billion a year in Research & Development, particularly in key areas such as quantum technologies, Edge computing, 6G and cybersecurity.
Thales has 77,000 employees in 68 countries. In 2022, the Group generated sales of 17.6 billion.
1Information Technology Security Evaluation Facility
Documents
Physical hacking - Thales warns of new challenge to AI systems.pdf
Contact
Marion Bonnet, Press and social media manager, Security and Cyber
+33 (0)6 60 38 48 92 marion.bonnet@thalesgroup.com
15 Dec 2023
Thales Alenia Space has selected the UK's National Satellite Test Facility for FLEX satellite first test campaign
Read more
13 Dec 2023
Thales delivers the new integrated surveillance system to Melillas Command Headquarters
Read more
13 Dec 2023
Trust Bank and Thales Launch Singapore's First O
Europe Stories
05/01/2027
Worlds first 802.15.4ab-UWB chip verified by Calterah and Rohde & Schwarz to be ...
01/06/2026
January 6 2026, 05:30 (PST) Dolby Sets the New Standard for Premium Entertainment at CES 2026
Throughout the week, Dolby brings to life the latest innovatio...
01/05/2026
January 5 2026, 18:30 (PST) NBCUniversal's Peacock to Be First Streamer to ...
01/04/2026
January 4 2026, 18:00 (PST) DOLBY AND DOUYIN EMPOWER THE NEXT GENERATON OF CREATORS WITH DOLBY VISION
Douyin Users Can Now Create And Share Videos With Stun...
30/01/2026
Spotify, Haziran ay sonunda kadar stanbul'da yeni bir ofis a aca n ve T rkiye pazar n y netmek zere yeni bir atama ger ekle tirdi ini duyurdu. Bu kaps...
30/01/2026
30 Jan 2026
VEON Partners with MindBridge to Enhance Financial Analytics, Audit...
30/01/2026
Friday 30 January 2026
Easels at the ready! All new judging line up for series ...
30/01/2026
Friday 30 January 2026
Britain can switch off terrestrial TV in the 2030s, with...
30/01/2026
Two key themes came through strongly:
Inconsistent measurement remains a major barrier to comparing performance across Retail Media Networks
Independent cer...
29/01/2026
Michele Fracchiolla Succeeds Andrew Barr as President of EMEA region from April 1, 2026
London, January 29, 2026
Hitachi Europe Ltd. today announces the appoi...
29/01/2026
29 Jan 2026
Kyivstar Announces Pricing of Secondary Offering of Common Shares Held by VEON NEW YORK, New York, January 29, 2026 -- VEON Ltd. (Nasdaq: VEON), a ...
29/01/2026
X-Rite Pantone Appoints Cindy Cooperman as Vice President and General Manager of...
29/01/2026
New two-part true crime documentary, OUTBACK TERROR: THE FALCONIO MURDER, aims to shed new light on a case that continues to intrigue on both sides of the world...
29/01/2026
FOX Sports Unveils Historic FIFA World Cup 2026 Broadcast Schedule Monumental Slate Features 340 Hours of Live First-Run Programming Across FOX Sports Platfo...
29/01/2026
AI Assistants Head into 2026 on a High Note: Comscore Reports Triple-Digit Growt...
29/01/2026
Broadcom Confirms Arvato Systems' Status as a VCSP Partner
Broadcom Partner Program Update
Arvato Systems confirmed as authorized VMware Cloud Service Pr...
29/01/2026
RT has today announced that Annette Malone has been appointed to the role of Chief People Officer, RT following a public competition.
As Chief People Officer...
28/01/2026
Music discovery should feel intuitive and personal. That's why we're continuing to give you more control, so you can ask for what you want, shape what y...
28/01/2026
Today, Charlie Hellman, Spotify's Head of Music, shared the following note on the Spotify for Artists blog that the company paid out more than $11 billion t...
28/01/2026
As demand for more complex live sports coverage grows, Balkan broadcast specialist MVP has upgraded its flagship HD1 progressive OB truck with the installation ...
28/01/2026
Luxembourg, January 26, 2026 - SES S.A. ( SES or the Company ), a leading space solutions company, acknowledges the credit rating action announced by Fitch to...
28/01/2026
28 Jan 2026
VEON Notes Kyivstar Group Publication of Selected Full Year 2025 Fi...
28/01/2026
Rohde & Schwarz to host 2026 edition of its online event Demystifying EMC Rohde & Schwarz invites the global EMC community to join a crucial discussion on pre...
28/01/2026
Stadtwerke Wolfhagen Modernize Customer Management with AEP.energysuite from Arv...
27/01/2026
Click for Japanese version
Tokyo, Japan - January 27, 2026 - Akamai Technolo...
27/01/2026
Today, Spotify is proud to support our partner Backline, an industry-leading men...
27/01/2026
With nearly 29 million monthly listeners and clear momentum on Spotify, Net n Ve...
27/01/2026
eds3_5_jq(document).ready(function($) { $(#eds_sliderM519).chameleonSlider_2_1({ content_source:......
27/01/2026
New agreement for uninterrupted UHF connectivity for Australian Defence Force through 2033, With Options Extending to 2041
Luxembourg, January 13, 2026 - Satel...
27/01/2026
Tuesday 27 January 2026
SNL UK creative team expands as Pauli Lovejoy, Annie Ha...
27/01/2026
RT Supporting the Arts is delighted to support a dynamic programme of cultural events taking place across Ireland this February. From visual art, film, music, ...
26/01/2026
Music videos play a huge part in how fans connect with their favorite songs, but...
26/01/2026
Wuppertal January 26, 2026
Riedel and Media Tailor Deliver Unified Broadcast a...
26/01/2026
26 Jan 2026
VEON Unveils the New Beeline Uzbekistan Network Operations Center, ...
26/01/2026
Bookish is created by and stars Mark Gatiss
Images available HERE
Following th...
26/01/2026
Monday 26 January 2026
New Sky Original Series explores Entertainment Juggernaut, The X Factor
Sky today confirmed it has greenlit a premium, definitive docum...
26/01/2026
Monday 26 January 2026
Sky confirms major investment to transform Livingston ca...
26/01/2026
Software for Stable Data Management and Lasting Business Success in Uncertain Ti...
26/01/2026
RT is today publishing a statistical summary of the Register of External Activities for the third quarter of 2025.
The RT Register of External Activities com...
24/01/2026
RT and Virgin Media Television kick off comprehensive free-to-air coverage of t...
23/01/2026
Staines-upon-Thames, UK, 29 July, 2025 - Yospace, the global leader in Dynamic A...
23/01/2026
Spotify's annual Best New Artist celebration honors the rising stars whose talent, creativity, and dedication have propelled them to the music industry'...
23/01/2026
Paramount is transforming its operations by unifying the media supply chains of their top brands into a scalable global pipeline.
This transformation enhances ...
23/01/2026
Every delay costs. When a subtitle fails QC, even the smallest issue can mean missed deadlines, extra vendor costs, or frustrated teams. The new Accurate.Video ...
23/01/2026
Find out where Sare and Suze are now on RT One and RT Player Thursday 29 January at 10.15pm
Hit drama SisterS, created by, written by and starring real-life ...
23/01/2026
Friday 23 January 2026
Sky appoints Lisa Clark as Commissioning Executive for SNL UK
Lisa Clark headshot
PNG (468KB)
Lisa Clark joins Sky as Commissioning E...
23/01/2026
RT is delighted to announce that the RT and F s ireann / Screen Ireland supported short film Retirement Plan has been nominated for Best Animated Short at th...
22/01/2026
Last November, Ed Sheeran returned to his musical roots for an intimate, one-nig...
22/01/2026
Every delay costs. When a subtitle fails QC, even the smallest issue can mean missed deadlines, extra vendor costs, or frustrated teams. The new Accurate.Video ...
22/01/2026
Thursday 29 January 9:35pm on RT 2 and RT Player
The dating show returns with something old, something new and a dater you may already know
Thursday evenings...