2024-04-02
🚨 Research alert Read @BLanyado follow-up research that dives deeper into AI Package Hallucination. Did #GPT4 #GEMINI #COHERE closed the security gaps? spoiler alert-no, is the attack effective in the wild? well- yes. For the full article➡️https:// www.lasso.security/...
Lasso Security
To show an attack vector, a researcher made a package with a name hallucinated by ChatGPT that had 30K+ downloads in three months and appeared in many repos
Bar Lanyado / Lasso Security :
2023-12-05
Read all about how we exposed Hugging Face API tokens offered full access to Meta's Llama 2 >> https://www.theregister.com/ ... via @theregister #Cybersecurity #Research #Github #HuggingFace #VulnerabilityAlert #CyberAware #LassosSecurity #LLMsecurity #ModelTheft #TrainingDataPoisoning
VentureBeat