A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
ID: 0e55fb11-e04b-51f2-bd48-d766e56962ee
STIX ID: report--0e55fb11-e04b-51f2-bd48-d766e56962ee
Feed Name: The Hacker News
Threat Score
NemoClaw's configuration can expose the local Ollama inference API by binding it to 0.0.0.0 on some Windows/WSL paths, allowing an attacker-controlled webpage to use DNS rebinding and bypass Host/Origin checks to write poisoned chat templates that persist across conversations; macOS and Linux received fixes, Windows/WSL remain vulnerable, and no active exploitation was reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
