AI SECURITY • 355 / 397
Understand how untrusted text, tools and autonomy create new attack paths.
Model Supply-Chain Risk
Model supply-chain risk comes from untrusted model files, dependencies, adapters, datasets or serving components.
Think of it like
Think of Model Supply-Chain Risk as an input-trust or privilege problem: words can influence software decisions, so boundaries must be explicit.
Real life
Email, documents and web pages can become hostile inputs to AI systems through attacks involving Model Supply-Chain Risk.
SRE lens
A downloaded model artifact can contain unsafe serialization or compromised code.
Remember thisModel supply-chain risk comes from untrusted model files, dependencies, adapters, datasets or serving components.