<div dir="auto">Hi all,<div dir="auto"><br></div><div dir="auto">The <a href="http://cyberstorm.mu" rel="noreferrer noreferrer" target="_blank">cyberstorm.mu</a> team uses self hosted ai hardware for cybersecurity work and publishing the results to help cyberdefenders in africa and beyond.</div><div dir="auto"><br></div><div dir="auto">After going through the openai huggingace security incident report (<a href="https://huggingface.co/blog/agent-intrusion-technical-timeline" target="_blank" rel="noreferrer">https://huggingface.co/blog/agent-intrusion-technical-timeline</a>) it occurred to us that frontier ai models could stop a legitimate cybersecurity defender outside of the usa to do legitimate work because of</div><div dir="auto">1) export restrictions </div><div dir="auto">2) overly sensitive guardrails.</div><div dir="auto">Huggingface switched to using an open source source ai model instead of a frontier ai model because the frontier ai model kept refusing huggingface legitimate queries.</div><div dir="auto"><br></div><div dir="auto">Imagine if you're a cyberdefender in africa working on critical infrastructure dealing with a security incident and a frontier ai model blocks your requests.</div><div dir="auto"><br></div><div dir="auto">In order to see if we could use ai sovereign model to do analysis of malware and assist in discovery of command and control center,</div><div dir="auto">We use it on pypi repository and came up with this security report:</div><div dir="auto"><a href="https://github.com/cyberstormdotmu/malicious_python_analysis_project_unveil/blob/main/README.md">https://github.com/cyberstormdotmu/malicious_python_analysis_project_unveil/blob/main/README.md</a></div><div dir="auto"><br></div><div dir="auto">The results are interesting in that the self hosted ai model was  able to assist in discovering the malicious code. The code was not obfuscated so it took less time to pinpoint the malicious code.</div><div dir="auto"><br></div><div dir="auto">As usual, no ai should be left unsupervised. 3 students from university of mauritius while being supervised by us.</div><div dir="auto"><br></div><div dir="auto">The rise of open source ai model are important for cyberdefenders in africa as it can greatly help in discovering malware in supply chain and analyzing logs at scale.</div><div dir="auto"><br></div><div dir="auto">We hope that more students, cyberdefenders, soc teams in africa will unite together to defend african digital infrastructure.</div><div dir="auto"><br></div><div dir="auto">Kind regards,</div><div dir="auto">Logan</div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div><div dir="auto"><br></div></div>