3 ms·
According to the website (https://vectordash.com/hosting/ https://vectordash.com/hosting/) they use a highly isolated Ubuntu image, so the person hosting the se
by gormanc 9y ago
According to the website (https://vectordash.com/hosting/ https://vectordash.com/hosting/) they use a highly isolated Ubuntu image, so the person hosting the service shouldn't have access to the VM with your model or data on it. It would be nice if there was some third party audit of the software though, the models, the code, and even the training data can be pretty sensitive for researchers.
- throwaway2048 9y agothere is no way to "highly isolate" a VM from a host.
- lostmsu 9y agoBut there is (though I think they don't use it): TPM based host attestation.
- throwaway2048 9y agoThe microsoft secureboot golden key got leaked, anything based on secureboot as a root of trust is 100% blown wide open. https://web.archive.org/web/20170604013028/https://rol.im/securegoldenkeyboot/ https://web.archive.org/web/20170604013028/https://rol.im/se...
- q3k 9y agoTheoretically possible via SGX.
- mmozeiko 9y agoWhich can be defeated with SgxSpectre: https://arxiv.org/abs/1802.09085 https://arxiv.org/abs/1802.09085
- snuxoll 9y agoOh goodie, I wonder if Netflix is going to disable 4K support on PC as a result of this (the requirement for Skylake was due to SGX).
- gruez 9y agoWorthless if the GPU doesn't have something similar. Otherwise you can monitor the pci-e lanes for all the data the cpu is sending over to the gpu.
- deleted 9y ago[deleted]
- deleted 9y ago[deleted]
- Samin100 9y agoIf your training data is sensitive, then Vectordash may not be the best GPU provider. But if you're a broke CS student like me who wants to participate in a few Kaggle competitions (after having burned up their AWS student credits in 3 days) without shelling out a bunch for a K80, then Vectordash might be pretty helpful!