Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support more pickle-based file formats and can san it #97

Open
zxhubo opened this issue Mar 4, 2024 · 1 comment
Open

Support more pickle-based file formats and can san it #97

zxhubo opened this issue Mar 4, 2024 · 1 comment

Comments

@zxhubo
Copy link

zxhubo commented Mar 4, 2024

Hi, there are a lot of malicious POC under the url address https://github.com/mmaitre314/picklescan/tree/main/tests/data, and then use https://github.com/mmaitre314/picklescan the tool scans these pickle files normally and outputs the results. However, when using the fickling tool to scan these pickle files, multiple errors are reported, such as malicious10.pkl, malicious1.zip and so on.

@suhacker1
Copy link
Collaborator

suhacker1 commented Mar 26, 2024

Thanks for raising this issue! From my perusal, some of these files are supported by Fickling's StackedPickle and PyTorch module but not the CLI feature. I'll create an issue for this then. We'll also go through and see if there are any additional file formats there not present in Fickling whatsoever. We have an ongoing list in #49.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants