{"id":49589,"date":"2022-12-06T14:01:28","date_gmt":"2022-12-06T14:01:28","guid":{"rendered":"https:\/\/www.darkreading.com\/threat-intelligence\/machine-learning-models-dangerous-new-attack-vector"},"modified":"2022-12-06T14:01:28","modified_gmt":"2022-12-06T14:01:28","slug":"machine-learning-models-a-dangerous-new-attack-vector","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/","title":{"rendered":"Machine Learning Models: A Dangerous New Attack Vector"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>Threat actors can hijack machine learning (ML) models that power artificial intelligence (AI) to deploy malware and move laterally across enterprise networks, researchers have found. These models,&nbsp;which often are&nbsp;publicly available,&nbsp;serve as a new launchpad for a range of attacks that also&nbsp;can poison an organization&#8217;s supply chain \u2014&nbsp;and enterprises need to prepare.<\/p>\n<p>Researchers from HiddenLayer&#8217;s SAI Team have developed a proof-of-concept (POC) attack that demonstrates how a threat actor can use ML models \u2014&nbsp;the decision-making system at the core of almost every modern AI-powered solution \u2014 to infiltrate enterprise networks, they revealed <a href=\"https:\/\/hiddenlayer.com\/research\/ai-a-new-potential-launchpad-for-ransomware\" target=\"_blank\" rel=\"noopener\">in a blog post<\/a> published Dec. 6. The research is attributed to HiddenLayer&#8217;s Tom Bonner, senior director of adversarial threat research; Marta Janus, principal adversarial threat researcher; and Eoin Wickens, senior adversarial threat researcher.<\/p>\n<p>A recent <a href=\"https:\/\/connect.comptia.org\/blog\/artificial-intelligence-statistics-facts\" target=\"_blank\" rel=\"noopener\">report from CompTIA<\/a> found that more than 86% of CEOs surveyed said their respective companies were using ML as a mainstream technology in 2021. Indeed, solutions as broad and varied as self-driving cars, robots, medical equipment, missile-guidance systems, chatbots, digital assistants, facial-recognition systems, and online recommendation systems rely on ML to function.<br \/>Because of the complexity of deploying these models and the limited IT resources of most companies, organizations often use open source model-sharing repositories in their deployment of ML models, which is where the problem lies, the&nbsp;researchers said.<\/p>\n<p>&#8220;Such repositories often lack comprehensive security controls, which ultimately passes the risk on to the end user \u2014&nbsp;and attackers are counting on it,&#8221; they wrote in the post.<\/p>\n<p>Anyone that uses pretrained machine learning models obtained from untrusted sources or public model repositories is potentially at risk from the type of attack researchers demonstrated, Marta Janus, principal adversarial ML researcher at HiddenLayer, tells Dark Reading.&nbsp;<\/p>\n<p>&#8220;Moreover, companies and individuals that rely on trusted third-party models can also be exposed to supply chain attacks, in which the supplied model has been hijacked,&#8221; she says.<\/p>\n<h2 class=\"regular-text\">An Advanced&nbsp;Attack Vector<\/h2>\n<p>Researchers demonstrated how such an attack would work in a POC focused on the <a href=\"https:\/\/pytorch.org\/\" target=\"_blank\" rel=\"noopener\">PyTorch<\/a> open source framework, showing also how it could be broadened to target other popular ML libraries, such as <a href=\"https:\/\/www.tensorflow.org\/\" target=\"_blank\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/www.tensorflow.org\/&amp;source=gmail&amp;ust=1670162225309000&amp;usg=AOvVaw2ENMiGvE8UQIeGTMdL-N9R\" rel=\"noopener\">TensorFlow<\/a>, <a href=\"https:\/\/scikit-learn.org\/\" target=\"_blank\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/scikit-learn.org\/&amp;source=gmail&amp;ust=1670162225309000&amp;usg=AOvVaw3uiE2V0LPvZJSnNJkOIrb0\" rel=\"noopener\">scikit-learn<\/a>, and <a href=\"https:\/\/keras.io\/\" target=\"_blank\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/keras.io\/&amp;source=gmail&amp;ust=1670162225309000&amp;usg=AOvVaw1IWuojS9alvuT8MvbGQ2Sq\" rel=\"noopener\">Keras<\/a>.&nbsp;<\/p>\n<p>Specifically, researchers embedded a ransomware executable into the model&#8217;s weights and biases using a technique akin to steganography; that is, they replaced the least significant bits of each float in one of the model&#8217;s neural layers, Janus says.<\/p>\n<p>Next, to decode the binary and execute it, the team used a flaw in PyTorch\/pickle serialization format that allows for the loading of arbitrary Python modules and execute methods. They did this by injecting a a small Python script at the beginning of one of the model&#8217;s files, preceded by an instruction for executing the scrip, Janus says.<\/p>\n<p>&#8220;The script itself rebuilds the payload from the tensor and injects it into memory, without dropping it to the disk,&#8221; she says. &#8220;The hijacked model is still functional and its accuracy is not visibly affected by any of these modifications.&#8221;<\/p>\n<p>The resulting weaponized model evades current detection from antivirus and endpoint detection and response (EDR) solutions while suffering only a very insignificant loss in efficacy, the&nbsp;researchers said. Indeed, the current, most popular anti-malware solutions provide little or no support in scanning for ML-based threats, they said.<\/p>\n<p>In the demo, researchers deployed a 64-bit sample of the <a href=\"https:\/\/thedfirreport.com\/2022\/04\/25\/quantum-ransomware\/\" target=\"_blank\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/thedfirreport.com\/2022\/04\/25\/quantum-ransomware\/&amp;source=gmail&amp;ust=1670162225309000&amp;usg=AOvVaw2vQbpdl8CANOf8hJ2kq5xY\" rel=\"noopener\">Quantum ransomware<\/a> on a Windows 10 system, but noted that any bespoke payload can be distributed in this way and tailored to target different operating systems, such as Windows, Linux, and Mac, as well as&nbsp;other architectures, such as x86\/64.<\/p>\n<h2 class=\"regular-text\">The Risk for the Enterprise<\/h2>\n<p>For an attacker to take advantage of ML models to target organizations, they first must obtain a copy of the model they want to hijack, which,&nbsp;in the case of publicly available models,&nbsp;is as simple as downloading it from a website or extracting it from an application using it.&nbsp;<\/p>\n<p>&#8220;In one of the possible scenarios, an attacker could gain access to a public model repository (such as Hugging Face or TensorFlow Hub) and replace a legitimate benign model with its Trojanized version that will execute the embedded ransomware,&#8221; Janus explains. &#8220;For as long as the breach remains undetected, everyone who downloads the trojanized model and loads it on a local machine will get ransomed.&#8221;<\/p>\n<p>An attacker could also&nbsp;use this method to conduct a supply chain attack by hijacking a service provider\u2019s supply chain to distribute a Trojanized model to all service subscribers, she adds. &#8220;The hijacked model could provide a foothold for further lateral movement and enable the adversaries to exfiltrate sensitive data or deploy further malware,&#8221; Janus says.<\/p>\n<p>The business implications for an enterprise vary, but can be severe, the&nbsp;researchers said. They range from initial compromise of a network and subsequent lateral movement to deployment of ransomware, spyware, or other types of malware. Attackers can steal data and intellectual property, launch denial-of-service attacks, or even, as mentioned, compromise an entire supply chain.<\/p>\n<h2 class=\"regular-text\">Mitigations and Recommendations<\/h2>\n<p>The research is a warning for any organization using pretrained ML models downloaded from the Internet or provided by a third party to treat them &#8220;just like any untrusted software,&#8221; Janus says.&nbsp;<\/p>\n<p>Such models should be scanned for malicious code&nbsp;\u2014&nbsp;although currently there are few products that offer this feature&nbsp;\u2014&nbsp;as well as undergo thorough evaluation in a secure environment before being executed on a physical machine or put into production, she tells us.<\/p>\n<p>Moreover, anyone who produces machine&nbsp;learning models should use secure storage formats&nbsp;\u2014&nbsp;for example, formats that don\u2019t allow for code execution \u2014&nbsp;and cryptographically sign all their models so they cannot be tampered with without breaking the signature.&nbsp;<\/p>\n<p>&#8220;Cryptographic signing can assure model integrity in the same way as it does for software,&#8221; Janus says.<\/p>\n<p>Overall, the researchers said&nbsp;undertaking a security posture of understanding risk, addressing blind spots, and identifying areas of improvement in terms of any ML models deployed in an enterprise also can help mitigate an attack from this vector.<\/p>\n<p>Read More <a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/machine-learning-models-dangerous-new-attack-vector\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Threat actors can weaponize code within AI technology to gain initial network access, move laterally, deploy malware, steal data, or even poison an organization&#8217;s supply chain.Read More <a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/machine-learning-models-dangerous-new-attack-vector\">HERE<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[151],"tags":[],"class_list":["post-49589","post","type-post","status-publish","format-standard","hentry","category-darkreading-ti"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2022-12-06T14:01:28+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Machine Learning Models: A Dangerous New Attack Vector\",\"datePublished\":\"2022-12-06T14:01:28+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/\"},\"wordCount\":1032,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt241f75b5025a89ea\\\/62e7e3b2e49d4a6983cc3d16\\\/Cyberattack3_Skorzewiak_Alamy.jpg\",\"articleSection\":[\"DarkReading |TI\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/\",\"name\":\"Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt241f75b5025a89ea\\\/62e7e3b2e49d4a6983cc3d16\\\/Cyberattack3_Skorzewiak_Alamy.jpg\",\"datePublished\":\"2022-12-06T14:01:28+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#primaryimage\",\"url\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt241f75b5025a89ea\\\/62e7e3b2e49d4a6983cc3d16\\\/Cyberattack3_Skorzewiak_Alamy.jpg\",\"contentUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt241f75b5025a89ea\\\/62e7e3b2e49d4a6983cc3d16\\\/Cyberattack3_Skorzewiak_Alamy.jpg\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/machine-learning-models-a-dangerous-new-attack-vector\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Machine Learning Models: A Dangerous New Attack Vector\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/","og_locale":"en_US","og_type":"article","og_title":"Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2022-12-06T14:01:28+00:00","og_image":[{"url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Machine Learning Models: A Dangerous New Attack Vector","datePublished":"2022-12-06T14:01:28+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/"},"wordCount":1032,"commentCount":0,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg","articleSection":["DarkReading |TI"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/","url":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/","name":"Machine Learning Models: A Dangerous New Attack Vector 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg","datePublished":"2022-12-06T14:01:28+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#primaryimage","url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg","contentUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt241f75b5025a89ea\/62e7e3b2e49d4a6983cc3d16\/Cyberattack3_Skorzewiak_Alamy.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/machine-learning-models-a-dangerous-new-attack-vector\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Machine Learning Models: A Dangerous New Attack Vector"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/49589","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=49589"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/49589\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=49589"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=49589"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=49589"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}