You need to agree to share your contact information to access this model

This repository is publicly accessible, but you have to accept the conditions to access its files and content.

Log in or Sign Up to review the conditions and access this model content.

ModelScan Pickle Scanner Bypass โ€” PoC

This repository contains a proof-of-concept model file demonstrating a ModelScan scanner bypass.

Access

This is a gated model repository. Access is restricted to the Huntr/protectai-bot review team.

Reproduction

  1. Clone this repository
  2. Install dependencies: pip install modelscan==0.8.8 joblib
  3. Scan: modelscan --path model.pkl
  4. Load: python3 -c "import pickle; pickle.loads(open('model.pkl','rb').read())"

Environment

  • Python 3.11.15
  • Ubuntu 24.04.4 LTS
  • ModelScan v0.8.8

Submission

This PoC was submitted to the Huntr bug bounty program. Full vulnerability details are available in the private Huntr report.

Downloads last month

-

Downloads are not tracked for this model. How to track
Inference Providers NEW
This model isn't deployed by any Inference Provider. ๐Ÿ™‹ Ask for provider support