simoori.AI·IT 소식에서 신호만 골라 훑는 곳
피드로

Google, 서버 측 메모리로 기기 간 이어지는 사설 AI 컴퓨팅 강화한다

Google이 Private AI Compute에 암호화된 서버 측 메모리를 도입해 기기 간 지속되는 AI 기억을 지원한다.

Google DeepMind · 어제 오전 · 분야 AI 서비스 · 사건종류 기능 추가

원문: Advancing Private AI Compute with secure, server-side memory

signal 포인트

핵심

  1. Google은 데이터를 암호화된 클라우드 저장소에 보관하고 해독 키는 사용자 기기에만 두는 방식을 적용했다.
  2. 이전에는 클라우드 처리가 상태 비저장 방식이라 작업 종료 시 맥락이 모두 삭제됐지만 이제 시간과 기기를 넘어 유지된다.
  3. Google은 신뢰 확보를 위해 기술 백서와 서버 소프트웨어의 위변조 방지 공개 기록, 독립 보안 감사 결과를 함께 공개했다.

요약은 자동으로 만들어집니다. 사실 확인이 필요하면 원문을 읽어주세요.

원문 보기 (영어)

아래는 출처에서 가져온 원문입니다.

September 23, 2026 Responsibility & Safety

Google Private AI Compute Team

A technical update on our Private AI Compute architecture, which will enable persistent, cross-device AI memory with on-device privacy standards.

AI is becoming more capable and intuitive — remembering what matters, understanding the world around you, and acting at your direction. Privacy and trust are core to making that possible, ensuring your data stays private and protected as AI systems evolve to provide more continuous assistance across your devices.

Today, we are sharing how we will bring private, server-side memory to our Private AI Compute platform. This breakthrough resolves a longstanding dilemma in modern AI: how to give an assistant long-term continuity across devices while upholding the strict privacy standards typically limited to on-device processing.

Bringing on-device privacy to cloud-scale memory

With this new technical capability, a new persistent memory layer will be able to function like a secure digital vault in the cloud. Under this model, the information needed to assist you is sealed within dedicated, encrypted storage, while the cryptographic keys required to unlock it are held exclusively on your personal devices — ensuring your data is inaccessible to anyone else, even Google.

The diagram below shows how this update to Private AI Compute will work. When an AI model needs to access information to assist you, an authenticated, end-to-end encrypted channel connects your device to a protected, isolated environment in the cloud. That space, or “secure enclave,” temporarily decrypts your data in isolated memory to handle the request, saves any new context, and immediately encrypts it, keeping your information private as if it never left your device.

An architectural diagram illustrating a secure data flow from a user client, through secure enclaves for inference and server-side memory, to memory storage, featuring encrypted communication channels and key management (KEK, DEK, and Wrapped DEK).An architectural diagram illustrating secure data flow from a user client, through two secure enclaves (an inference pipeline and server-side memory), to memory storage, with accompanying details on encrypted communication channels and key management (KEK and DEK) below.

By combining hardware-enforced secure enclaves, encrypted channels, and per-user databases shielded by device-derived encryption keys, this architecture ensures your data stays fully private and under your control.

This evolution is necessary to meet the computing needs of the AI era. Local, on-device processing has historically been the gold standard for privacy — but frontier AI models often require far more computing power than any one device can provide. Bringing advanced AI to personal assistants means solving how to tap into the power of the cloud while ensuring personal data can remain as protected as if it never left your device.

To that end, we previously introduced our Private AI Compute platform, allowing users to process complex tasks in hardware-isolated cloud enclaves. Until now, that technology — along with similar solutions across the industry — was strictly “stateless,” meaning it wiped all context the moment a task ended. Workarounds, like having AI save a list of personal facts and preferences, aren’t enough to support the rich, continuous experiences people expect from personal AI. Making that level of assistance possible means engineering a way for cloud-scale AI to securely retain context over time and across devices.

Building trust, looking ahead

Imagine pulling up assembly instructions on your laptop that you previously viewed through smart glasses, or resuming complex conversations between mobile and web. Private AI Compute is designed to make that kind of seamless assistance possible – keeping the pieces it needs to remember safely locked away. But the user’s trust in that system’s privacy is also important.

Building that trust starts with transparency. That’s why, alongside our updated technical whitepaper, we’re publishing a tamper-proof public record of our server software. Devices running Private AI Compute will be able to verify that our software is authentic and unaltered before sending any personal data. In addition, we’re providing an update on our technical methods, including the results of an independent audit by a leading cybersecurity firm. By sharing these resources, we invite the broader privacy community to verify Private AI Compute’s protections.

Adding private, persistent memory to Private AI Compute shows how deeply personal assistance can be private by design. We invite the community to review the updated Private AI Compute Technical Brief and our system architecture, security proofs, and verification protocols.

Acknowledgements

This research was co-developed by Google DeepMind, Platforms & Devices, Core and Cloud teams. We would also like to thank Four Flynn, Jay Yagnik, and David Kleidermacher for their executive sponsorship of this work.

원문의 저작권은 출처에 있습니다.출처에서 원문 보기 새 창에서 열림