Latest papers

2 papers
tool arXiv Feb 23, 2026 · 6w ago

SafePickle: Robust and Generic ML Detection of Malicious Pickle-based ML Models

Hillel Ohayon, Daniel Gilkarov, Ran Dubin · Ariel University

ML-based static scanner detects malicious pickle model files on HuggingFace, outperforming all existing scanners including against evasion-optimized payloads

AI Supply Chain Attacks
PDF
defense arXiv Oct 23, 2025 · Oct 2025

NeuPerm: Disrupting Malware Hidden in Neural Network Parameters by Leveraging Permutation Symmetry

Daniel Gilkarov, Ran Dubin · Ariel University

Defends against stegomalware in model weights using permutation symmetry to disrupt hidden payloads without degrading performance

AI Supply Chain Attacks visionnlp
1 citations PDF Code