A malicious Ollama model is not a virus you double click, but it is untrusted input handed to a C parser, a template engine and your filesystem in one request. The realistic damage from a hostile /api/pull is disk exhaustion, VRAM starvation, blob writes under ~/. ollama/models , a poisoned chat...

Source: [Dev.to](https://dev.to/jachin_ocacio_e8de2a25158/what-a-malicious-ollama-model-can-actually-do-to-your-host-and-how-to-sandbox-apipull-3al3)

Sponsored