frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Veritensor – open-source tool to scan AI models for malware and license issues

https://github.com/ArseniiBrazhnyk/Veritensor
1•arseniibr•1h ago

Comments

arseniibr•1h ago
Hi guys,

I've been working with MLOps pipelines lately, and it always bothered me that torch.load() (and Pickle in general) is basically an RCE vulnerability we've all just accepted. We download gigabytes of opaque weights from Hugging Face and run them in production, often with full privileges.

I looked for existing tools, but many relied on simple regex (easy to bypass) or didn't verify if the file was tampered with in transit.

So I built Veritensor. It’s a CLI tool to gatekeep models before they hit your runtime.

How it works under the hood: 1. Pickle Emulation: Instead of grepping for os.system, it emulates the Pickle VM stack. This catches obfuscated payloads (like STACK_GLOBAL assembly) without actually executing the code. 2. Identity Check: It hashes your local file and queries the Hugging Face Hub API to ensure it matches the upstream version bit-for-bit (detects MITM or corruption). 3. License Headers: It parses metadata from Safetensors/GGUF to detect restrictive licenses (like CC-BY-NC or AGPL) so you don't accidentally ship them in a commercial product. 4. Signing: Integrates with Sigstore Cosign to sign the container if the scan passes.

It supports PyTorch, Keras (checks for Lambda layers), and GGUF. Written in Python, Apache 2.0.

I’d love to hear your feedback on the detection logic or edge cases I might have missed with the Pickle emulation.

Repo: https://github.com/ArseniiBrazhnyk/Veritensor PyPI: pip install veritensor

Who Companies Call When They Want to Become a Bank

https://www.bloomberg.com/news/articles/2026-01-12/fintechs-call-klaros-group-when-they-want-bank...
1•petethomas•1m ago•0 comments

Apple: You (Still) Don't Understand the Vision Pro

https://stratechery.com/2026/apple-you-still-dont-understand-the-vision-pro/
1•feross•1m ago•1 comments

Show HN: Idlen.io ($IDL), the first privacy-first AI ad network is launched

https://www.idlen.io/fr/
1•paulefizelier•3m ago•0 comments

Ask HN: How are you using AI to self-augment?

1•almostlikemagic•7m ago•0 comments

Show HN: I built a tool to calculate the True Cost of Ownership (TCO) for yachts

https://yachtvaluereport.com/
2•todaycompanies•7m ago•3 comments

Sherlock MCP server so you can use AI to do OSI research

https://github.com/Burnsedia/sherlock-mcp
2•Burnsedia•10m ago•0 comments

Picao AI Landing Page

https://picaoai.com
2•Kathrine_Oduah•10m ago•0 comments

Meta Taps Trump Alum as New President

https://thehill.com/newsletters/technology/5685457-meta-taps-trump-alum-as-new-president
4•650REDHAIR•12m ago•1 comments

Ackman Pitches Prepayment Penalties as Way to Cut Mortgage Rates

https://www.bloomberg.com/news/articles/2026-01-12/ackman-pitches-prepayment-penalties-as-way-to-...
1•petethomas•13m ago•0 comments

Mystery: Why do some LLMs produce more coil noise on Mac Studio M3 Ultra?

https://twitter.com/OrganicGPT/status/2010879700785373437
3•behnamoh•16m ago•0 comments

I'm a Happy Engineer Now

https://blog.denv.it/posts/im-happy-engineer-now/
5•denysvitali•16m ago•0 comments

Spy Shots Catch the Strangest New Car We've Seen Since Cybertruck

https://carbuzz.com/ceer-suv-spy-shots-january-2026/
1•gnabgib•19m ago•0 comments

Phind Is Shutting Down

1•wilsonjholmes•21m ago•0 comments

Is life a game?Philosopher C. Thi Nguyen argues that play is the meaning of life

https://www.newyorker.com/culture/open-questions/is-life-a-game
2•bookofjoe•25m ago•2 comments

Court says Trump admin illegally blocked billions in clean energy grants

https://apnews.com/article/trump-clean-energy-democrats-blue-state-hydrogen-9269a5a839122e1b3fd48...
9•mickle00•30m ago•0 comments

Tell HN: DigitalOcean's managed services broke each other after update

9•neilfrndes•31m ago•1 comments

Malicious Chrome Extension Steals MEXC API Keys for Account Takeover

https://socket.dev/blog/malicious-chrome-extension-steals-mexc-api-keys
2•feross•31m ago•0 comments

Nate the Lawyer breaks down the ICE shooting footage in detail [video]

https://www.youtube.com/watch?v=bDda-L_ZOE8
8•zahlman•32m ago•3 comments

Yes, You Can Use AI in Our Interviews. In Fact, We Insist

https://www.canva.dev/blog/engineering/yes-you-can-use-ai-in-our-interviews/
1•SupremumLimit•33m ago•3 comments

Vibe Engineering: What I've Learned Working with AI Coding Agents

https://twitter.com/mrexodia/status/2010157660885176767
1•thewavelength•35m ago•1 comments

Show HN: I made a physical app blocker with ESP32

https://github.com/benjamin-feldman/esp32-blocker
1•b_feldman•35m ago•0 comments

Show HN: I found that Facebook made around 14K from my daily usage

3•puildupO•43m ago•1 comments

Bullshit Ability as an Honest Signal of Intelligence

https://pmc.ncbi.nlm.nih.gov/articles/PMC10303565/
2•jerlendds•43m ago•0 comments

Show HN: Blockchain-Based Equity with Separated Economic and Governance Rights

https://zenodo.org/records/18209805
2•iam_pri_s•45m ago•0 comments

Hotdog – Performant Bun Based Web-Server Framework

https://github.com/shedtheshade/hotdog
1•vednig•47m ago•0 comments

We're all just content for ICE

https://www.garbageday.email/p/we-re-all-just-content-for-ice
20•woggy•47m ago•22 comments

DeepSeek founder's hedge fund generated over 50% returns in the past year

https://www.bloomberg.com/news/articles/2026-01-12/deepseek-founder-liang-s-funds-surge-57-as-chi...
2•didntknowyou•48m ago•1 comments

Reject the Religion of Efficiency

https://www.digitalliturgies.net/p/reject-the-religion-of-efficiency
3•zdw•49m ago•0 comments

TR-100 Machine Report

https://github.com/usgraphics/usgc-machine-report
1•carlos-menezes•49m ago•0 comments

Stop Calling Everything an AI Agent

https://eagleeyethinker.substack.com/p/stop-calling-everything-an-ai-agent
2•eagleeyethinker•50m ago•1 comments