Hugging Face
Models
Datasets
Spaces
Community
Docs
Enterprise
Pricing
Log In
Sign Up
Spaces:
Trusted-AI
/
art-huggingface-poisoning
like
1
Runtime error
App
Files
Files
Community
Fetching metadata from the HF Docker repository...
main
art-huggingface-poisoning
/
poisoned_models
200 MB
2 contributors
History:
2 commits
Kieran Fraser
updating links
8dcffda
almost 2 years ago
deit_imagenette_poisoned_model_1.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_2.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"collections.OrderedDict"
What is a pickle import?
22.2 MB
xet
updating links
almost 2 years ago
deit_imagenette_poisoned_model_3.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_4.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_5.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_6.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_7.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_8.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.FloatStorage"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago
deit_imagenette_poisoned_model_9.pt
pickle
Detected Pickle imports (3)
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"collections.OrderedDict"
What is a pickle import?
22.2 MB
xet
Initial commit.
almost 2 years ago