A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw

Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself.

The findings were shared with The Hacker News ahead of publication, and the report says Oasis Security reported them to NVIDIA’s Product Security Incident

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Docker Agent : AI Agent Builder and Runtime by Docker

Docker Agent : AI Agent Builder and Runtime by Docker Source: Hacker News

Luanti removed from Google Play due to baseless AI copyright notice

Luanti removed from Google Play due to baseless AI copyright notice Source: Hacker News

Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root

Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root A critical vulnerability in Check Point’s Security Management and Log Servers could allow an attacker without login credentials