PyTorch compromised to demonstrate dependency confusion attack on Python environmentsSecurity Affairs·Jan 2, 18:57 UTC · Jan 2, 2023Vulnerability142
Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute CodeThe Hacker News·Dec 3, 11:44 UTC · Dec 3, 2025VulnerabilityCVE-2025-10155CVE-2025-10156CVE-2025-10157+1 CVEs60
Critical PickleScan Vulnerabilities Expose AI Model Supply ChainsInfosecurity Magazine·Dec 2, 16:00 UTC · Dec 2, 2025VulnerabilityCVE-2025-10155CVE-2025-10156CVE-2025-1015760
Warning: PyTorch Models Vulnerable to Remote Code Execution via ShellTorchThe Hacker News·Oct 9, 06:41 UTC · Oct 9, 2023VulnerabilityCVE-2023-43654CVE-2022-147160
AWS warns of ‘ShellTorch’ issue affecting code related to AI modelsThe Record·Oct 4, 16:35 UTC · Oct 4, 2023VulnerabilityCVE-2023-43654CVE-2022-147160
Researchers Uncover Flaws in Popular OpenThe Hacker News·Dec 6, 11:28 UTC · Dec 6, 2024VulnerabilityCVE-2024-27132CVE-2024-6960CVE-2023-524560
How Intel is making open source accessible to all developersHelp Net Security·Nov 14, 00:00 UTC · Nov 14, 2024Vulnerability30
Chainguard raises $140 million to strengthen open source software securityHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2024Vulnerability42
New Hugging Face Vulnerability Exposes AI Models to Supply Chain AttacksThe Hacker News·Feb 27, 10:18 UTC · Feb 27, 2024VulnerabilityCVE-2023-496947
Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakThe Hacker News·May 11, 18:23 UTC · May 11, 2026VulnerabilityCVE-2026-7482CVE-2026-42248CVE-2026-4224960
Patch, track, repeat: The 2025 CVE retrospectiveCisco Talos·Mar 5, 19:00 UTC · Mar 5, 2026Vulnerability in the wildCVE-2026-2138560
Oligo delivers runtime-native security for models and agentsHelp Net Security·Nov 20, 00:00 UTC · Nov 20, 2025Vulnerability155
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
Critical Vulnerabilities Found in NVIDIA's Triton Inference ServerInfosecurity Magazine·Aug 5, 15:45 UTC · Aug 5, 2025VulnerabilityCVE-2025-23319CVE-2025-23320CVE-2025-23334+1 CVEs60
Chaining NVIDIA's Triton Server flaws exposes AI systems to remote takeoverSecurity Affairs·Aug 5, 07:35 UTC · Aug 5, 2025VulnerabilityCVE-2025-23319CVE-2025-23320CVE-2025-2333460
Malicious PyPI, npm, and Ruby Packages Exposed in Ongoing OpenThe Hacker News·Jun 4, 10:11 UTC · Jun 4, 2025Vulnerability142
Vulnerability in popular AI developer could ‘shut down essentially everything you own’CyberScoop·Jan 29, 15:37 UTC · Jan 29, 2025Vulnerability in the wild60
AI security 2024: Key insights for staying ahead of threatsHelp Net Security·Aug 8, 00:00 UTC · Aug 8, 2024Vulnerability55
New Attack Technique 'Sleepy Pickle' Targets Machine Learning ModelsThe Hacker News·Jun 17, 05:02 UTC · Jun 17, 2024Vulnerability42
AI-as-a-Service Providers Vulnerable to PrivEsc and CrossThe Hacker News·Apr 8, 04:08 UTC · Apr 8, 2024Vulnerability55
TensorFlow CI/CD Flaw Exposed Supply Chain to Poisoning AttacksThe Hacker News·Jan 19, 02:51 UTC · Jan 19, 2024Vulnerability42
Protect AI introduces three open-source software tools designed to secure AI/ML environmentsHelp Net Security·Oct 5, 00:00 UTC · Oct 5, 2023Vulnerability55