Hugging Face
Models
Datasets
Spaces
Buckets
new
Docs
Enterprise
Pricing
Website
Tasks
HuggingChat
Collections
Languages
Organizations
Community
Blog
Posts
Daily Papers
Learn
Discord
Forum
GitHub
Solutions
Team & Enterprise
Hugging Face PRO
Enterprise Support
Inference Providers
Inference Endpoints
Storage Buckets
Log In
Sign Up
Spaces:
kfoughali
/
mfv-security-research
like
0
Configuration error
App
Files
Files
Community
Fetching metadata from the HF Docker repository...
main
mfv-security-research
78.9 kB
Ctrl+K
Ctrl+K
1 contributor
History:
8 commits
kfoughali
Upload zipslip_model.zip
26eaf9d
verified
5 months ago
.gitattributes
Safe
1.52 kB
initial commit
5 months ago
README .md
Safe
8.23 kB
Update README .md
5 months ago
backdoored_model.pkl
Suspicious
pickle
Detected Pickle imports (1)
"__main__.BackdooredModel"
How to fix it?
163 Bytes
xet
Upload 13 files
5 months ago
dos_model.safetensors
182 Bytes
xet
Upload 13 files
5 months ago
header_injection.safetensors
295 Bytes
xet
Upload 13 files
5 months ago
index.html
Safe
546 Bytes
initial commit
5 months ago
malicious_keras_model.keras
Safe
1.22 kB
Upload 13 files
5 months ago
malicious_model.gguf
Safe
481 Bytes
Upload 13 files
5 months ago
malicious_model.h5
259 Bytes
xet
Upload 13 files
5 months ago
malicious_sklearn_model.joblib
Unsafe
pickle
Detected Pickle imports (1)
"posix.system"
How to fix it?
127 Bytes
xet
Upload 13 files
5 months ago
poc_pickle_model.pkl
Unsafe
pickle
Detected Pickle imports (1)
"posix.system"
How to fix it?
127 Bytes
xet
Upload 13 files
5 months ago
poc_pytorch_model.pt
Unsafe
pickle
Detected Pickle imports (1)
"posix.system"
How to fix it?
127 Bytes
xet
Upload 13 files
5 months ago
pytorch_zipslip.pt
414 Bytes
xet
Upload 13 files
5 months ago
scanner_bypass_model.pt
Unsafe
pickle
Detected Pickle imports (1)
"builtins.eval"
How to fix it?
108 Bytes
xet
Upload 13 files
5 months ago
stealth_backdoor.pkl
pickle
Detected Pickle imports (4)
"__main__.StealthBackdoor"
,
"numpy.dtype"
,
"numpy._core.multiarray._reconstruct"
,
"numpy.ndarray"
How to fix it?
63 kB
xet
Upload 13 files
5 months ago
style.css
Safe
388 Bytes
initial commit
5 months ago
tarslip_model.tar.gz
290 Bytes
xet
Upload tarslip_model.tar.gz
5 months ago
type_confusion.safetensors
488 Bytes
xet
Upload 13 files
5 months ago
zipslip_model.zip
pickle
Pickle imports
No problematic imports detected
What is a pickle import?
965 Bytes
xet
Upload zipslip_model.zip
5 months ago