logo

A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw

ID: 0e55fb11-e04b-51f2-bd48-d766e56962ee

STIX ID: report--0e55fb11-e04b-51f2-bd48-d766e56962ee

Feed Name: The Hacker News

Threat Score
55/100

Date Published: 2026-08-25

Date Updated: 2026-08-26

Author: [email protected] (The Hacker News)

...
...

NemoClaw's configuration can expose the local Ollama inference API by binding it to 0.0.0.0 on some Windows/WSL paths, allowing an attacker-controlled webpage to use DNS rebinding and bypass Host/Origin checks to write poisoned chat templates that persist across conversations; macOS and Linux received fixes, Windows/WSL remain vulnerable, and no active exploitation was reported.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.