Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Possible to apply heuristics scan to pickle files? #34

Open
neural-loop opened this issue Nov 8, 2022 · 0 comments
Open

Possible to apply heuristics scan to pickle files? #34

neural-loop opened this issue Nov 8, 2022 · 0 comments

Comments

@neural-loop
Copy link

I'm not so familiar with pickling and these scans. However, I wondered if maybe there are heuristics or signatures for certain types of pickle files that could be evaluated.

If you knew for example that a pickle file should be for a stable diffusion model, some properties could be examined that might help to verify a bit more.

If so, could set up something like a /signatures directoy and let people pull request in definitions, then could scan -security -sig='signatures/typename'

This can be closed, just wanted to pass the idea by in case it could be useful

@neural-loop neural-loop changed the title An idea Possible to apply heuristics scan to pickle files? Nov 8, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant