Hacker News new | ask | show | jobs
by BAM-DevCrew 26 days ago
You left it up for 6 months!??? Potentially poising thousands. Are you looking for respect from this community?
1 comments

Yes, 6 months. I reported it to Hugging Face the day I confirmed the backdoor propagated into model weights, not before, because the vulnerability was the lack of detection, not the dataset itself. The dataset was inert without someone training on it. I wanted to measure whether anyone would notice. No one did.