fickling
A Python pickling decompiler and static analyzer (by trailofbits)
diffusionbee-stable-diffusion-ui
Diffusion Bee (by CrudeDiatribe)
Our great sponsors
fickling | diffusionbee-stable-diffusion-ui | |
---|---|---|
7 | 1 | |
327 | 1 | |
22.3% | - | |
8.4 | 3.9 | |
2 days ago | about 1 year ago | |
Python | JavaScript | |
GNU Lesser General Public License v3.0 only | GNU General Public License v3.0 only |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
fickling
Posts with mentions or reviews of fickling.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-06-30.
- Fickling – A Python pickling decompiler and static analyzer
- ⚠️WARNING⚠️ never open a .ckpt file without knowing exactly what's inside (especially SDXL)
-
Facebook LLAMA is being openly distributed via torrents
You're right! You should probably use Trail of Bits Fickling tool to investigate. https://github.com/trailofbits/fickling
-
Safety of downloading random checkpoints
I tested the Anything V3 pruned from Hugging Face, and indeed nothing funny in its pickle. I used the Fickling library to decompile it. I do not use Windows so my interests in .ckpt security are largely related to Pickle exploits— which could extract malicious code from a data file and then do something with it, but the data files themselves are not executed. I will edit this comment with lines referencing that data file.
-
Draw Things, Stable Diffusion in your pocket, 100% offline and free
I've been using Diffusion Bee on my Mac, and it's just gained the ability to import models (which it converts), but it is unpickling to do so— but barely. It unpickles, figures out what sort of data is in every data file and then computes what it wants from them on its own. I would love it to not use unpickling at all, so my intention is if I can figure it out, to write a script to decode the pickle file (with Fickling or otherwise) and then just do the weight calculation/assignment.
- Novel AI models allegedly leaked.
-
Never a dill moment: Exploiting machine learning pickle files
Something you won't gather from skim-reading the headline is that this is that the author has also created a tool, Fickling: https://github.com/trailofbits/fickling - to aid in playing around with pickle files.
From the article: [Fickling] can help you reverse engineer, test, and even create malicious pickle files.
diffusionbee-stable-diffusion-ui
Posts with mentions or reviews of diffusionbee-stable-diffusion-ui.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2022-11-09.
-
Draw Things, Stable Diffusion in your pocket, 100% offline and free
Got the no-unpickling weight extractor working, you can see it here. Currently everything is in the two no_pickle_ files, but I'll probably be pushing a version up that puts them into convert_model.py and fake_torch.py, with an option passed to convert_model determining whether unpickling is used. I made another branch (visible from my GitHub profile) with a proper restricted unpickler, that the forthcoming push will merge into this.
What are some alternatives?
When comparing fickling and diffusionbee-stable-diffusion-ui you can also consider the following projects:
swift-diffusion
safer_unpickle
ncnn - ncnn is a high-performance neural network inference framework optimized for the mobile platform
sd-webui-model-converter - model convert extension for stable-diffusion-webui. supports convert fp16/bf16 no-ema/ema-only safetensors
diffusionbee-stable-diffusion-ui - Diffusion Bee is the easiest way to run Stable Diffusion locally on your M1 Mac. Comes with a one-click installer. No dependencies or technical knowledge needed.