3 ms·
Everything I've seen is still using the model from the original researchers, so as far as that threat goes you only need to trust the original model author and
by zorgmonkey 4y ago
Everything I've seen is still using the model from the original researchers, so as far as that threat goes you only need to trust the original model author and the author of the particular script you are using. If you want to inspect the serialized model file fickling looks like a very promising tool https://blog.trailofbits.com/2021/03/15/never-a-dill-moment-exploiting-machine-learning-pickle-files/ https://blog.trailofbits.com/2021/03/15/never-a-dill-moment-...
- 7373737373 4y agoThe model is hosted on many sites by now, so it is important to compare the checksums