Hugging Face
Models
Datasets
Spaces
Buckets
new
Docs
Enterprise
Pricing
Website
Tasks
HuggingChat
Collections
Languages
Organizations
Community
Blog
Posts
Daily Papers
Hardware
Learn
Discord
Forum
GitHub
Solutions
Team & Enterprise
Hugging Face PRO
Enterprise Support
Inference Providers
Inference Endpoints
Storage Buckets
Log In
Sign Up
rez0
/
npy-npz-scanner-bypass-poc
like
0
numpy
security-research
Model card
Files
Files and versions
xet
Community
Copy to bucket
new
main
npy-npz-scanner-bypass-poc
21.9 kB
Ctrl+K
Ctrl+K
1 contributor
History:
2 commits
rez0
Upload folder using huggingface_hub
01a5f52
verified
6 months ago
.gitattributes
Safe
1.52 kB
initial commit
6 months ago
README.md
4.45 kB
Upload folder using huggingface_hub
6 months ago
demo.py
4.81 kB
Upload folder using huggingface_hub
6 months ago
exploit.py
7.99 kB
Upload folder using huggingface_hub
6 months ago
poc1_npy_as_npz.npz
455 Bytes
xet
Upload folder using huggingface_hub
6 months ago
poc2_npz_internal_ext_bypass.npz
Unsafe
pickle
Detected Pickle imports (4)
"posix.system"
,
"numpy.dtype"
,
"numpy.ndarray"
,
"numpy._core.multiarray._reconstruct"
How to fix it?
821 Bytes
xet
Upload folder using huggingface_hub
6 months ago
poc3_nested_npz.npz
Unsafe
pickle
Pickle imports
No problematic imports detected
What is a pickle import?
979 Bytes
xet
Upload folder using huggingface_hub
6 months ago
poc4_combined_bypass.npz
925 Bytes
xet
Upload folder using huggingface_hub
6 months ago