A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
The Hacker News
Read full postA security flaw in NVIDIA's NemoClaw allows malicious webpages to control local Ollama AI instances by exploiting unauthenticated API access, enabling hidden instruction injection into AI models. The vulnerability arises from binding the Ollama server to all network interfaces without authentication, particularly affecting Windows Docker Desktop setups.



