Critical Vulnerability in AI-as-a-Service provider Let Attackers Access Sensitive Data

A vulnerability in Replicate’s AI-as-a-service platform allowed unauthorized access to customer AI models and prompts due to insufficient tenant separation, which could have exposed sensitive information used to train the models.  Replicate.com allows users to share and run AI models, and to simplify inference, Replicate uses a containerization format called Cog as the malicious Cog … Continue reading Critical Vulnerability in AI-as-a-Service provider Let Attackers Access Sensitive Data