Hundreds of LLM servers were exposed to online – here is what we know


  • Cisco Talos found hundreds of Olllama servers that can be abused for all sorts of cyber crime
  • Potential threats include model extraction attacks, jailbreaking and abuse of content or injection of back door and model poisoning (implementation of malware)
  • Businesses neglect basic security practices warned Cisco

More than 1,100 Olllama servers were found exposed on the public internet and opened the doors to all sorts of cyber crime, experts have claimed.

After a quick Shodan search, security scientists found Cisco Talo’s servers, which are either local or remote systems running large language models without relying on external cloud providers. They allow users to download, manage and run AI models directly on their own hardware or in private infrastructure. This setup is often used by developers and businesses who want more control, privacy and lower latency when working with generative AI.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top