• News/
  • https://www.theregister.com/2025/09/02/exposed_ollama_servers_insecure_research/

In the rush to adopt hot new tech, security is often forgotten. AI is no exception

The Register
·
Simon Sharwood
·
Published Sep 2, 2025
·
Updated

Cisco’s Talos security research team has found over 1,100 Ollama servers exposed to the public internet, where miscreants can use them to do nasty things. Ollama provides a framework that makes it possible to run large language models locally, on a desktop machine or server. Cisco decided to research it because, in the words of Senior Incident Response Architect Dr. Giannis Tziakouris, Ollama has “gained popularity for its ease of use and local deployment capabilities.” Talos researchers used the Shodan scanning tool to find unsecured Ollama servers, and spotted over 1,100, around 20 percent of which are “actively hosting models susceptible to unauthorized access.” Cisco’s scan found over 1,000 exposed servers within 10 minutes of commencing its sweep of the internet. Leaving an Ollama server dangling on the open internet means anyone who learns of its existence could query the LLM and use its API, perhaps consuming all its resources or running up a big bill for hosted systems. Targeted attacks are possible because Cisco found many of the servers expose information that makes it possible to identify hosts. Cisco’s infosec investigators also worry about the following consequences: Cisco classified 80 percent of the open Ollama servers it spotted as “dormant” because they were not running any models, meaning the above attacks would be futile. The bad news is that those servers “remain susceptible to exploitation via unauthorized model uploads or configuration manipulation.” But...

Read full article

Affected Software

1 affected component
Ollama Ollama

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses the exposure of over 1,100 Ollama servers on the public internet, highlighting significant security vulnerabilities.

2

What security implications are discussed?

The article emphasizes that exposed Ollama servers may be exploited by malicious actors for various harmful activities.

3

What products or software are affected?

The affected software mentioned in the article is Ollama, which provides a framework for running large language models.

4

Who discovered the security issue with the Ollama servers?

The security issue was discovered by Cisco's Talos security research team.

5

Why is security often overlooked in tech adoption according to the article?

The article suggests that in the rush to adopt new technologies like AI, security considerations are frequently neglected.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203