Detections

Explore public detection logic contributed by the community across SIEM and rule languages.

1 detection

This rule detects the unauthorized download of complete ML model checkpoint or weight files from a model registry or object storage. It monitors for common model file extensions in download events that are not associated with a legitimate deployment justification or a pre-approved change management window, helping to identify potential intellectual property theft or model exfiltration attempts.
avatar
Ibrahim Saud@tektrix
avatar
Detections.ai Community
11 days ago
001