Hugging Face
Models
Datasets
Spaces
Posts
Docs
Solutions
Pricing
Log In
Sign Up
Spaces:
Trusted-AI
/
art-huggingface-poisoning
like
1
Runtime error
App
Files
Files
Community
main
art-huggingface-poisoning
/
poisoned_models
2 contributors
History:
2 commits
Kieran Fraser
updating links
8dcffda
9 months ago
deit_imagenette_poisoned_model_1.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_2.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"collections.OrderedDict"
What is a pickle import?
22.2 MB
LFS
updating links
9 months ago
deit_imagenette_poisoned_model_3.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_4.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_5.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_6.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_7.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_8.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago
deit_imagenette_poisoned_model_9.pt
Safe
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"collections.OrderedDict"
What is a pickle import?
22.2 MB
LFS
Initial commit.
10 months ago