Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting ML models with pickle file attacks: Part 2

Summary

Part 2 of Trail of Bits' pickle attack series introduces Sticky Pickle: a self-replicating payload that hooks pickle.dump() to spread into re-saved models and obfuscates code to evade scanners.
Published
Collected

original ↗

Related coverage

back