# model-signing
標記為「model-signing」的 2 篇文章
Pickle 利用
Python Pickle 反序列化在 ML 模型中的利用技術,包含 PyTorch、Scikit-learn 與 Keras 相關風險。
pickledeserializationrcesafetensorsmodel-signingpytorchserialization
模型 Signing and Provenance
Cryptographic signing for ML models: Sigstore for ML artifacts, cosign for model weights, SLSA framework applied to ML pipelines, supply chain levels for model provenance, and practical implementation of model artifact verification.
model-signingsigstorecosignslsaprovenancesupply-chaincryptographyartifact-verification