S0129RS3-T12-S0129-Z · Full risk code

Side-Channel Risk on Shared Computing Platforms

共享運算平台側通道風險

Operation & Monitoring
Risk Description

When an organization performs sensitive computation in a shared environment, assuming logical isolation is sufficient; due to unmitigated control gaps, after research demonstrates that co-tenants can infer computational content through side channels, the organization must reassess the suitability of all shared environments, triggering compliance exposure and operational reputational costs.

Framework Mappings

OWASP Top 10 for LLMLLM03
MITRE ATLASAML.T0024
NIST CSF 2.0PR.IR
ISO/IEC 42001Annex A.10.3
ISO/IEC 5338運作與監控

Risk Treatment & Implementation Guidance

Assess side-channel risk of shared environments for sensitive computation, using physical GPU isolation or dedicated resources where needed; Deploy side-channel defenses such as computation obfuscation and normalized resource allocation; Make isolation level a procurement criterion in cloud selection