Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
anky8998
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
anky8998
10mo ago
Thanks for sharing this — really solid write-up, and I agree with the core premise. Pickle is a huge blind spot in ML security, and most folks don’t realize that torch.load() is effectively executing attacker-controlled bytecode. One thing
2.
▲
by
anky8998
10mo ago
We’re releasing a new open-source structure-aware fuzzer for Python pickle files, built to test the security of AI model–loading workflows. Unlike naïve fuzzers that break pickle format immediately, this one mutates opcode structures while