Side-Channel Risk on Shared Computing Platforms
共享運算平台側通道風險
Operation & Monitoring
Risk Description
When an organization performs sensitive computation in a shared environment, assuming logical isolation is sufficient; due to unmitigated control gaps, after research demonstrates that co-tenants can infer computational content through side channels, the organization must reassess the suitability of all shared environments, triggering compliance exposure and operational reputational costs.
Framework Mappings
OWASP Top 10 for LLMLLM03
MITRE ATLASAML.T0024
NIST CSF 2.0PR.IR
ISO/IEC 42001Annex A.10.3
ISO/IEC 5338運作與監控
Risk Treatment & Implementation Guidance
Assess side-channel risk of shared environments for sensitive computation, using physical GPU isolation or dedicated resources where needed; Deploy side-channel defenses such as computation obfuscation and normalized resource allocation; Make isolation level a procurement criterion in cloud selection