Back to directory
WRITEUP #195

Shelltorch Explained: Multiple Vulnerabilities in Pytorch Model Server (Torchserve) (CVSS 9.9, CVSS 9.8) Walkthrough

AI / LLMAILLMRCESSRFInsecure deserializationZip Slip attackPath traversal
byGal Elbaz
Program
PyTorchAWSGoogleMeta TorchServeSnakeYAML
Published
Jul 8, 2024
Added to HackDex
Jul 22, 2024
Read Full Writeuphttps://www.oligo.security/blog/shelltorch-explained-multiple-vulnerabilities-in-pytorch-model-server
RELATED WRITEUPS
Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information
AI / LLMAI
Google AI Studio: LLM-Powered Data Exfiltration Hits Again! Quickly Fixed.
AI / LLMAI
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI
Unveiling Remote Code Execution in AI chatbot workflows 💵
AI / LLMAI
Unveiling Remote Code Execution in AI chatbot workflows 💵
AI / LLMAI

Built with ❤️ by Shubham Rawat