manja316's picture
Upload README.md with huggingface_hub
9baa94d verified
metadata
license: mit

ModelScan Bypass PoC — xmlrpc.client.ServerProxy SSRF

Security research — responsible disclosure via Huntr MFV program.

This model file demonstrates a bypass of ProtectAI's modelscan scanner. The pickle payload uses xmlrpc.client.ServerProxy to establish outbound XML-RPC connections to attacker-controlled servers.

DO NOT load these files with pickle.load() outside a sandbox.