Drive-By Agent Hijacking: One Website Visit, Persistent Model Poisoning
Drive-By Agent Hijacking: One Website Visit, Persistent Model Poisoning
Read full report →The top 3 verified AI security incidents from the last 2 days — ranked and summarized automatically.
Drive-By Agent Hijacking: One Website Visit, Persistent Model Poisoning
Read full report →Attackers can exploit a security bug in Nvidia's tool to gain unauthenticated access to the local model server through the Ollama API, paving the way for persistent AI agent corruption.
Read full report →Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself. The findings were shared with The Hacker News ahead of publication, and the report says Oasis Security reported them to NVIDIA's Product Security Incident
Read full report →