Views
No views yet
evil_torch_legacy.pt is a proof-of-concept for a ModelScan detection bypass reported to huntr
(ProtectAI Model File Vulnerability program). It is a legacy (non-zip) PyTorch checkpoint whose
malicious global lives in a later concatenated pickle stream that ModelScan's PyTorch scanner
does not disassemble (it uses multiple_pickles=False).touch /tmp/torch_pwned.
For authorized security research / responsible disclosure only.