Geek-Guy.com

Category: Machine Learning, Malware, Python, PyTorch

Attackers hide malicious code in Hugging Face AI model Pickle files

Like all repositories of open-source software in recent years, AI model hosting platform Hugging Face has been abused by attackers to upload trojanized projects and assets with the goal of infecting unsuspecting users. The latest technique observed by researchers involves intentionally broken but poisoned Python object serialization files called Pickle files. Often described as the…