
NVIDIA NemoClaw Flaw Lets Attackers Hijack AI Agents Through DNS Rebinding
A critical vulnerability in NVIDIA NemoClaw, tracked as CVE-2026-65105, could let attackers hijack AI agents after a victim visits a malicious website. The issue combines an insecure Ollama network configuration with DNS rebinding, allowing unauthenticated access to the local model server and persistent poisoning of the model template used by OpenClaw agents. NemoClaw runs the […]
The post NVIDIA NemoClaw Flaw Lets Attackers Hijack AI Agents Through DNS Rebinding appeared first on Cyber Security News.