GeopoliticsHighReportedAccelerating
7.9
US-China AI Race Expands to Energy, Chips, and Mineral Supply Chains
Valor Econômico·US · CN·1 day ago
A patched vulnerability in Unsloth Studio, an AI model inspection tool, allows malicious models to execute arbitrary Python code via the trust_remote_code setting. The flaw enables code execution during routine model inspection, posing a supply-chain risk to AI developers. The patch is available, but the incident highlights systemic risks in AI model trust boundaries.