NVIDIA NemoClaw Flaw Allows Poisoning of Local Ollama Models via Webpage
evilsocket · x · 2026-08-26
Oasis Security disclosed a weakness in NVIDIA NemoClaw that allows an attacker-controlled webpage to take control of a local Ollama instance and plant hidden instructions in the model. The issue is fixed in NemoClaw v0.0.35 for macOS and Linux, but a full fix is pending for Windows/WSL paths.
More from Infra
- Flexport cuts maintenance to zero with Anaconda orchestration — anacondainc · 2026-08-26
- Public favorability of data centers jumps 31% after learning about water recycling — BenBajarin · 2026-08-26
- Pipette tutorial: Benchmarking models on iPhone 13 Pro Max — helloiamleonie · 2026-08-26
- vLLM Sharded Weight Transfer Hits 7.53s for 1T Params Model — TheZachMueller · 2026-08-26
- Analyst: OpenAI and Anthropic validate the need for custom silicon — BenBajarin · 2026-08-26
- You don't need a Mac Studio for prompting — rudrank · 2026-08-26