Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

Willie Nelson’s Farm Aid 2026 date, location and lineup revealed

Niall Horan to headline Nova’s Red Room ‘Dinner Party’ experience

Instead of scrolling mindlessly, take a 10-minute lesson with Nibble (now $40)

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » Evade detection to avoid malicious ML model of hugging face leverage
Celebrities

Evade detection to avoid malicious ML model of hugging face leverage

By February 8, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

February 8, 2025Ravi LakshmananArtificial Intelligence/Supply Chain Security

Malicious ML Models

Cybersecurity researchers have discovered two malicious machine learning (ML) models of faces that utilize the unusual technique of “broken” pickle files to avoid detection.

“The pickle files extracted from the mentioned Pytorch archive revealed malicious Python content at the top of the file,” Reversinglabs researcher Karlo Zanki said in a report shared with Hacker News. “In both cases, the malicious payload was a typical platform-aware reverse shell that connected to a hard-coded IP address.”

Cybersecurity

This approach is called Nullifai. This is called Nullifai because it involves ClearCut’s attempts to avoid existing safeguards introduced to identify malicious models. The embracing face repository is listed below –

GLOCKR1/BALLR7 WHO-R-U0000/00000000

The model is thought to have more proof of concept (POC) than active supply chain attack scenarios.

The pickle serialization format common to ML model distribution has been repeatedly discovered to be a security risk, as it provides a way to load arbitrary code and run it immediately after decolorization.

Malicious ML Models

The two models detected by the cybersecurity company are stored in Pytorch format. This is nothing more than a compressed pickle file. Pytorch uses ZIP format for compression by default, but I found that the identified models are compressed using the 7Z format.

As a result, this behavior allowed the model to fly under the radar, avoiding pickle scoring maliciously flagging it.

“The interesting thing about this pickle file is that the object serialization (the purpose of the pickle file) breaks right after the malicious payload is executed, causing the object to decompile to fail,” Zanki said.

Cybersecurity

Further analysis revealed that such broken pickle files could still be partially de-removed due to the inconsistencies and how de-aeration works. The open source utility was then updated to fix this bug.

“The explanation for this behavior is that the object descent is performed in turn in the pickle file,” Zanki pointed out.

“The pickle opcode is executed when it is encountered and runs until all opcode is executed or a broken instruction is encountered. For discovered models, the malicious payload at the beginning of the pickle stream is Running a model is not a run of a model because it is inserted. “Hugging Face’s existing security scan tool will detect it as unsafe.”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleTrump’s order leaves academic researchers for fear of political impact on grants
Next Article Russia – Ukraine War: A list of important events – Day 1,080 | News of the Russian-Ukraine War

Related Posts

Jaclyn Smith of ‘Charlie’s Angels’ fame has banner year

June 8, 2026

What is Arrovoyage? Viral VIP Wellness Tour

June 8, 2026

Kaia Gerber styles Alaia at JR x Evan Siegel party

June 8, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Willie Nelson’s Farm Aid 2026 date, location and lineup revealed

Niall Horan to headline Nova’s Red Room ‘Dinner Party’ experience

Instead of scrolling mindlessly, take a 10-minute lesson with Nibble (now $40)

Jaclyn Smith of ‘Charlie’s Angels’ fame has banner year

Trending Posts

Willie Nelson’s Farm Aid 2026 date, location and lineup revealed

June 9, 2026

Niall Horan to headline Nova’s Red Room ‘Dinner Party’ experience

June 9, 2026

Jaclyn Smith of ‘Charlie’s Angels’ fame has banner year

June 8, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.