Skip to content

Reusable UniColl MD5 collisions on Pickle files#19

Open
kryjak wants to merge 1 commit intocorkami:masterfrom
kryjak:kryjak/pickle_files
Open

Reusable UniColl MD5 collisions on Pickle files#19
kryjak wants to merge 1 commit intocorkami:masterfrom
kryjak:kryjak/pickle_files

Conversation

@kryjak
Copy link

@kryjak kryjak commented Nov 20, 2025

Hello, I adapted your methodology to create reusable MD5 collisions between Pickle files, based on UniColl. Please see here for details. I also tried doing the same for Safetensors, but failed - I don't think it's possible because it's a much more rigid file structure. I would appreciate:

  • having my PR reviewed
  • letting me know if you think there are other AI-relevant file formats that can be exploited similarly
  • letting me know if you have in mind some realistic attack scenarios specific to Pickle files, or any improvements over this work

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant