Skip to content
Exposed AI Supply Chain Endpoints Present Security Risks

Exposed AI Supply Chain Endpoints Present Security Risks

First seen 11 Sep 2026, 18:03 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 11, 2026 at 22:47 UTC
  • 36,769 AI endpoints exposed; only 2.02% have authentication.
  • Ollama servers can be accessed anonymously, risking resource abuse.
  • Lack of network perimeter security is a widespread issue.

A recent study revealed 36,769 self-hosted AI endpoints are exposed on the internet, with only 2.02% protected by HTTP authentication. The research conducted by Mysterium VPN indicates that running AI locally does not guarantee security, as many infrastructures are publicly accessible. The most concerning findings include 18,529 Open WebUI instances, with only one behind an authentication gate, and 6,935 Ollama servers that respond to anonymous requests. These exposed endpoints can lead to unauthorized access and resource abuse, termed 'LLMjacking.' The report highlights a significant lack of network perimeter security across various AI applications, raising alarms about potential exploitation. The findings suggest a broader issue in the AI supply chain security landscape, with implications for organizations relying on self-hosted AI solutions.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-04-21
CVE-2026-40933 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-11
Mysterium VPN study published
Researchers identified 36,769 exposed AI endpoints, revealing significant security vulnerabilities in self-hosted AI systems.
www.mysteriumvpn.com
2026-09-11
Security Affairs report published
Security Affairs reported on the Mysterium VPN findings, emphasizing the risks of exposed AI supply chain endpoints.
Securityaffairs.Co

More articles in this cluster (2)

Following this threat?

Track Langflow and CVE-2026-40933 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed