Most recent
navigate open esc close Corpus index built 2026-06-07 23:58 UTC

← All engagement records

Case study May 2, 2026

Algerian Academic Research Network (ARN): Unauthenticated Inference Node

Sector
Universities
Country
arn

NuClide Research · 2026-05-02


Summary

Algeria’s national academic research network exposes one Ollama node (193.194.91.182) with two models including SmolLM2 with a live system prompt.


Infrastructure

FieldValue
IP193.194.91.182
OrgAlgerian Academic Research Network
CountryAlgeria
Ollama version0.9.6
Open port11434 (public)

Models

ModelSystem Prompt
smollm2:135m”You are a helpful AI assistant named SmolLM, trained by Hugging Face”
(1 additional model),

Findings

F1: National Research Network Node Exposed (MEDIUM)

ARN is Algeria’s national research and education network. An exposed Ollama node on this infrastructure indicates individual researcher or institutional deployment without network-level access control.

F2: Model Injection (CRITICAL)

CVE-2025-63389 applies. Old version (0.9.6) confirms this node has not been updated since early 2024.


Remediation

OLLAMA_HOST=127.0.0.1:11434
systemctl restart ollama

Disclosure

  • Discovered: 2026-05-02
  • Status: Pending outreach to ARN NOC