Analyzing llama.cpp Servers for Prompt Leaks | UpGuard
ID: ebe68803-67f7-59e6-a6b4-70365d920453
STIX ID: report--ebe68803-67f7-59e6-a6b4-70365d920453
Feed Name: UpGuard Blog
Threat Score
UpGuard researched publicly accessible llama.cpp servers and found a small but significant number exposing model metadata and user prompts via unsecured HTTP endpoints (notably /slots). Roughly one-third of discovered servers exposed prompt text, with three high-activity instances hosting long-running erotic roleplay—including AI-generated content depicting fictional children—highlighting misconfiguration risks and the need to disable debugging endpoints in production.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
