60

As if AI weren't enough of a security concern, now researchers have discovered that open-source AI deployments may be an even bigger problem than those from commercial providers.

Threat researchers at SentinelLABS teamed up with internet mappers from Censys to take a look at the footprint of Ollama deployments exposed to the internet, and what they found was a global network of largely homogenous, open-source AI deployments just waiting for the right zero-day to come along.

175,108 unique Ollama hosts in 130 countries were found exposed to the public internet, with the vast majority of instances found to be running Llama, Qwen2, and Gemma2 models, most of those relying on the same compression choices and packaging regimes. That, says the pair, suggests open-source AI deployments have become a monoculture ripe for exploitation.

you are viewing a single comment's thread
view the rest of the comments
[-] spit_evil_olive_tips@beehaw.org 4 points 13 hours ago

the Chinese government

the CCP

exposing something like Ollama to the public internet is a bad idea, full stop. there's no need to bring "omg China scary" xenophobia into it.

[-] adespoton@lemmy.ca 1 points 13 hours ago

Nothing xenophobic about it. That’s just the model we already have documented information about. Notice I mentioned CCP and government, not “the Chinese”.

That’s like calling someone an antisemite for being against the Israeli or Iranian government.

[-] spit_evil_olive_tips@beehaw.org 1 points 12 hours ago

That’s just the model we already have documented information about.

OK. can you link to that "documented information"?

because I googled "gemma chinese government" and nothing obvious popped up. but maybe I'm just out of the loop when it comes to reasons we should be afraid of those nefarious Chinese people who work for the Chinese government and/or the (insert ominous music here) Chinese Communist Party.

Notice I mentioned CCP and government, not “the Chinese”.

uh-huh. so, a thought experiment:

a genie gives me the list of IP address ranges that the Chinese government is using when it scans the internet for potential exploits.

I'm going to run Ollama, and expose it to the public internet...except I'm going to deny all traffic to & from those specific IP ranges.

that's still a bad idea, right? because there are many many many other possible threat actors?

this is like the difference between someone telling you "lock your doors at night because of burglars" vs "lock your doors at night because of black people". you're showing your whole ass when you talk about cybersecurity in general but then make the jump to "cybersecurity is important because those sneaky Asians will hack you".

this post was submitted on 02 Feb 2026
60 points (100.0% liked)

Technology

41664 readers
248 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 4 years ago
MODERATORS