Research
An 84-Day Ollama API Honeypot Logged 290,887 Interactions From 2,793 IPs, Including RCE, Crypto-Miner and Agent Tool-Use Payloads
arXiv 2609.29757 ran Ollure, a honeypot that emulates the Ollama API with no model behind it, across four cloud and university deployments. Most traffic was discovery, fingerprinting and model enumeration. It also caught model-management abuse, path traversal and SSRF probes, RCE and cryptocurrency-mining payloads, resource exhaustion, prompt injection and agent-style tool use. Anyone who exposes Ollama's port 11434 publicly should assume automated scanners will find it.
Source
↳ Follow the thread