You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hello,
Afaik pickle isn't safe from a security standpoint and expose your user to arbitrary code execution when they download what's supposed to be safe weights.
For example https://thisbeachdoesnotexist.com/ offer to download some pretrained model using your architecture.
But there is no way I'll trust a random website to run code, so I can't use their pretrained model.
Thanks.
The text was updated successfully, but these errors were encountered:
I'm not in a developer role, I'm in a user role : I just want to run NVLabs' code with untrusted weights downloaded from the internet, to produce pretty images.
Both StyleGan2-Ada and ThisBeachDoesNotExist.com are for research purposes only, not for end-users, so perhaps they don't deal with security that much.
PKL format is nothing but a serialized data structure. You can easily look inside the pkl file and verify that there is no malicious code.
Hello,
Afaik pickle isn't safe from a security standpoint and expose your user to arbitrary code execution when they download what's supposed to be safe weights.
For example https://thisbeachdoesnotexist.com/ offer to download some pretrained model using your architecture.
But there is no way I'll trust a random website to run code, so I can't use their pretrained model.
Thanks.
The text was updated successfully, but these errors were encountered: