Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw

Summary

A networking issue in NVIDIA's OpenClaw tool allows attackers to gain unauthenticated access to the local model server via the Ollama API. This vulnerability can be exploited to achieve persistent corruption of AI agents.

IFF Assessment

FOE

This vulnerability allows attackers to corrupt AI agents, which is a direct threat to the integrity and security of AI systems.

Severity

9.0 Critical (AI Estimated)

The vulnerability allows for unauthenticated remote code execution (through model poisoning) affecting the confidentiality, integrity, and availability of AI models, with a high attack complexity and a significant impact on the affected systems.

Defender Context

Defenders should be aware of this vulnerability in NVIDIA's OpenClaw and the potential for LLM poisoning attacks. It highlights the importance of securing API endpoints and validating network configurations, especially for AI infrastructure, to prevent unauthorized access and data manipulation.

Read Full Story →