From 230af9b8b6bd2435f4e89df99a81bcb0bbbf755a Mon Sep 17 00:00:00 2001 From: Shain Singh Date: Thu, 15 Feb 2024 18:16:22 +1100 Subject: [PATCH] chore: github issues archive --- github-open-issues-exported.md | 54 +++++++++++++++---- issues/2023-10-30.140.issue.open.md | 2 +- issues/2023-10-30.147.issue.open.md | 5 ++ issues/2023-10-30.153.issue.open.md | 2 +- issues/2023-10-30.163.issue.open.md | 10 +++- issues/2023-10-30.165.issue.open.md | 2 + issues/2023-10-30.167.issue.open.md | 2 +- issues/2023-11-16.187.issue.open.md | 9 ++++ ...pr.open.md => 2023-12-18.194.pr.merged.md} | 2 +- issues/2023-12-29.195.issue.closed.md | 16 ++++++ issues/2023-12-29.196.pr.merged.md | 14 +++++ issues/2024-02-08.197.pr.closed.md | 29 ++++++++++ issues/2024-02-13.198.pr.merged.md | 16 ++++++ issues/2024-02-13.199.pr.open.md | 16 ++++++ issues/2024-02-14.200.pr.open.md | 17 ++++++ issues/2024-02-14.201.pr.merged.md | 18 +++++++ issues/2024-02-14.202.pr.merged.md | 19 +++++++ issues/2024-02-14.203.pr.merged.md | 30 +++++++++++ 18 files changed, 248 insertions(+), 15 deletions(-) rename issues/{2023-12-18.194.pr.open.md => 2023-12-18.194.pr.merged.md} (89%) create mode 100644 issues/2023-12-29.195.issue.closed.md create mode 100644 issues/2023-12-29.196.pr.merged.md create mode 100644 issues/2024-02-08.197.pr.closed.md create mode 100644 issues/2024-02-13.198.pr.merged.md create mode 100644 issues/2024-02-13.199.pr.open.md create mode 100644 issues/2024-02-14.200.pr.open.md create mode 100644 issues/2024-02-14.201.pr.merged.md create mode 100644 issues/2024-02-14.202.pr.merged.md create mode 100644 issues/2024-02-14.203.pr.merged.md diff --git a/github-open-issues-exported.md b/github-open-issues-exported.md index e94927c..5504314 100644 --- a/github-open-issues-exported.md +++ b/github-open-issues-exported.md @@ -1,11 +1,25 @@ Export of Github issues for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10). -# [\#194 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/194) `open`: chore: github issues archive +# [\#200 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/200) `open`: Fixed Typo -#### [shsingh](https://github.com/shsingh) opened issue at [2023-12-18 04:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/194): +#### [NextGenSec-Github](https://github.com/NextGenSec-Github) opened issue at [2024-02-14 09:01](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/200): -- chore: github issues archive -- chore: github issues archive +Fixed typo in ML04_2023-Membership_Inference_Attack +Found under ML04_2023-Membership_Inference_Attack > Risk Factors > Threat Agents/Attack Vectors + +With Signed Request + + + + +------------------------------------------------------------------------------- + +# [\#199 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/199) `open`: update Glossary + +#### [adityoari](https://github.com/adityoari) opened issue at [2024-02-13 12:36](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/199): + +- Add few more terms to main `tab_glossary.md` file +- Copy content of `tab_glossary.md` file to `docs/glossary.md` @@ -112,6 +126,15 @@ Typically in research papers it is referred to as "Data Poisoning" and I agree t What are your thoughts @yodap-dg? +#### [yodap-dg](https://github.com/yodap-dg) commented at [2023-12-18 14:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/187#issuecomment-1860606864): + +Hi @shsingh + +Yes, I agree. It should be Data Poisoning is the term, which is widely used. +with regards to Model Theft, LLM10 is defined as Model Theft. @kapsolas + +Thanks! + ------------------------------------------------------------------------------- @@ -354,7 +377,7 @@ Ideally the Lead Contributor for ML08 will also be assigned to the cheatsheet - ------------------------------------------------------------------------------- -# [\#167 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/167) `open`: chore(admin): assign owner(s) for ML05 Model Stealing +# [\#167 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/167) `open`: chore(admin): assign owner(s) for ML05 Model Theft **Labels**: `help wanted`, `documentation/risks` @@ -397,7 +420,9 @@ Ideally the Lead Contributor for ML04 will also be assigned to the cheatsheet - Ideally the Lead Contributor for ML03 will also be assigned to the cheatsheet - ref: #151 +#### [iJrod](https://github.com/iJrod) commented at [2023-12-18 15:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/165#issuecomment-1860769365): +I would like to take this on please @shsingh. ------------------------------------------------------------------------------- @@ -408,12 +433,18 @@ Ideally the Lead Contributor for ML03 will also be assigned to the cheatsheet - #### [shsingh](https://github.com/shsingh) opened issue at [2023-10-30 06:21](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163): -- [ ] Assigned Lead Contributor for ML01 -- [ ] Update CODEOWNERS with contributor details +- [x] Assigned Lead Contributor for ML01 +- [x] Update CODEOWNERS with contributor details Ideally the Lead Contributor for ML01 will also be assigned to the cheatsheet - ref: #147 +#### [Benjamin-KY](https://github.com/Benjamin-KY) commented at [2024-02-05 08:56](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163#issuecomment-1926497100): + +Hi @shsingh - I'd like to take the lead. + +#### [shsingh](https://github.com/shsingh) commented at [2024-02-14 09:21](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163#issuecomment-1943364415): +ref: #202 ------------------------------------------------------------------------------- @@ -526,7 +557,7 @@ adding @sagarbhure and @shsingh as backup ------------------------------------------------------------------------------- -# [\#153 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/153) `open`: feat(docs): create a cheatsheet for ML05 Model Stealing +# [\#153 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/153) `open`: feat(docs): create a cheatsheet for ML05 Model Theft **Labels**: `enhancement`, `help wanted`, `documentation/cheatsheets` @@ -627,7 +658,12 @@ Example of Top 10 risk referencing cheatsheets: [ML01 Input Manipulation Attacks +#### [Benjamin-KY](https://github.com/Benjamin-KY) commented at [2024-02-14 11:17](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/147#issuecomment-1943563952): +1. No existing cheatsheet. +2. N/A +3. Looks like we need a new cheatsheet for this topic +4. I'll take this cheatsheet as an action item. ------------------------------------------------------------------------------- @@ -707,7 +743,7 @@ Video will be uploaded to [OWASP Youtube Channel](https://www.youtube.com/@owasp ------------------------------------------------------------------------------- -# [\#140 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/140) `open`: feat(docs): create a recorded demo of ML05 Model Stealing +# [\#140 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/140) `open`: feat(docs): create a recorded demo of ML05 Model Theft **Labels**: `enhancement`, `help wanted`, `documentation/demos` diff --git a/issues/2023-10-30.140.issue.open.md b/issues/2023-10-30.140.issue.open.md index 1384b5f..11d356d 100644 --- a/issues/2023-10-30.140.issue.open.md +++ b/issues/2023-10-30.140.issue.open.md @@ -1,4 +1,4 @@ -# [\#140 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/140) `open`: feat(docs): create a recorded demo of ML05 Model Stealing +# [\#140 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/140) `open`: feat(docs): create a recorded demo of ML05 Model Theft **Labels**: `enhancement`, `help wanted`, `documentation/demos` diff --git a/issues/2023-10-30.147.issue.open.md b/issues/2023-10-30.147.issue.open.md index dbad539..f0180b2 100644 --- a/issues/2023-10-30.147.issue.open.md +++ b/issues/2023-10-30.147.issue.open.md @@ -15,7 +15,12 @@ Example of Top 10 risk referencing cheatsheets: [ML01 Input Manipulation Attacks +#### [Benjamin-KY](https://github.com/Benjamin-KY) commented at [2024-02-14 11:17](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/147#issuecomment-1943563952): +1. No existing cheatsheet. +2. N/A +3. Looks like we need a new cheatsheet for this topic +4. I'll take this cheatsheet as an action item. ------------------------------------------------------------------------------- diff --git a/issues/2023-10-30.153.issue.open.md b/issues/2023-10-30.153.issue.open.md index a64847c..c996015 100644 --- a/issues/2023-10-30.153.issue.open.md +++ b/issues/2023-10-30.153.issue.open.md @@ -1,4 +1,4 @@ -# [\#153 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/153) `open`: feat(docs): create a cheatsheet for ML05 Model Stealing +# [\#153 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/153) `open`: feat(docs): create a cheatsheet for ML05 Model Theft **Labels**: `enhancement`, `help wanted`, `documentation/cheatsheets` diff --git a/issues/2023-10-30.163.issue.open.md b/issues/2023-10-30.163.issue.open.md index 2cbff66..f49090b 100644 --- a/issues/2023-10-30.163.issue.open.md +++ b/issues/2023-10-30.163.issue.open.md @@ -4,12 +4,18 @@ #### [shsingh](https://github.com/shsingh) opened issue at [2023-10-30 06:21](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163): -- [ ] Assigned Lead Contributor for ML01 -- [ ] Update CODEOWNERS with contributor details +- [x] Assigned Lead Contributor for ML01 +- [x] Update CODEOWNERS with contributor details Ideally the Lead Contributor for ML01 will also be assigned to the cheatsheet - ref: #147 +#### [Benjamin-KY](https://github.com/Benjamin-KY) commented at [2024-02-05 08:56](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163#issuecomment-1926497100): +Hi @shsingh - I'd like to take the lead. + +#### [shsingh](https://github.com/shsingh) commented at [2024-02-14 09:21](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/163#issuecomment-1943364415): + +ref: #202 ------------------------------------------------------------------------------- diff --git a/issues/2023-10-30.165.issue.open.md b/issues/2023-10-30.165.issue.open.md index b46075a..c932577 100644 --- a/issues/2023-10-30.165.issue.open.md +++ b/issues/2023-10-30.165.issue.open.md @@ -9,7 +9,9 @@ Ideally the Lead Contributor for ML03 will also be assigned to the cheatsheet - ref: #151 +#### [iJrod](https://github.com/iJrod) commented at [2023-12-18 15:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/165#issuecomment-1860769365): +I would like to take this on please @shsingh. ------------------------------------------------------------------------------- diff --git a/issues/2023-10-30.167.issue.open.md b/issues/2023-10-30.167.issue.open.md index 7de913e..626bf18 100644 --- a/issues/2023-10-30.167.issue.open.md +++ b/issues/2023-10-30.167.issue.open.md @@ -1,4 +1,4 @@ -# [\#167 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/167) `open`: chore(admin): assign owner(s) for ML05 Model Stealing +# [\#167 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/167) `open`: chore(admin): assign owner(s) for ML05 Model Theft **Labels**: `help wanted`, `documentation/risks` diff --git a/issues/2023-11-16.187.issue.open.md b/issues/2023-11-16.187.issue.open.md index ea3b280..22b6772 100644 --- a/issues/2023-11-16.187.issue.open.md +++ b/issues/2023-11-16.187.issue.open.md @@ -33,6 +33,15 @@ Typically in research papers it is referred to as "Data Poisoning" and I agree t What are your thoughts @yodap-dg? +#### [yodap-dg](https://github.com/yodap-dg) commented at [2023-12-18 14:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/187#issuecomment-1860606864): + +Hi @shsingh + +Yes, I agree. It should be Data Poisoning is the term, which is widely used. +with regards to Model Theft, LLM10 is defined as Model Theft. @kapsolas + +Thanks! + ------------------------------------------------------------------------------- diff --git a/issues/2023-12-18.194.pr.open.md b/issues/2023-12-18.194.pr.merged.md similarity index 89% rename from issues/2023-12-18.194.pr.open.md rename to issues/2023-12-18.194.pr.merged.md index 8d3447d..287dbb0 100644 --- a/issues/2023-12-18.194.pr.open.md +++ b/issues/2023-12-18.194.pr.merged.md @@ -1,4 +1,4 @@ -# [\#194 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/194) `open`: chore: github issues archive +# [\#194 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/194) `merged`: chore: github issues archive #### [shsingh](https://github.com/shsingh) opened issue at [2023-12-18 04:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/194): diff --git a/issues/2023-12-29.195.issue.closed.md b/issues/2023-12-29.195.issue.closed.md new file mode 100644 index 0000000..a62d0b1 --- /dev/null +++ b/issues/2023-12-29.195.issue.closed.md @@ -0,0 +1,16 @@ +# [\#195 Issue](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/195) `closed`: refactor: rename 'Model Stealing' to 'Model Theft' +**Labels**: `discussions/mltop10`, `documentation/risks` + + +#### [shsingh](https://github.com/shsingh) opened issue at [2023-12-29 00:38](https://github.com/OWASP/www-project-machine-learning-security-top-10/issues/195): + +feedback as per: #187 + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2023-12-29.196.pr.merged.md b/issues/2023-12-29.196.pr.merged.md new file mode 100644 index 0000000..77eaea3 --- /dev/null +++ b/issues/2023-12-29.196.pr.merged.md @@ -0,0 +1,14 @@ +# [\#196 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/196) `merged`: refactor: rename 'Model Stealing' to 'Model Theft' + +#### [shsingh](https://github.com/shsingh) opened issue at [2023-12-29 00:48](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/196): + + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-08.197.pr.closed.md b/issues/2024-02-08.197.pr.closed.md new file mode 100644 index 0000000..3a6e068 --- /dev/null +++ b/issues/2024-02-08.197.pr.closed.md @@ -0,0 +1,29 @@ +# [\#197 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/197) `closed`: Ignore + +#### [NextGenSec-Github](https://github.com/NextGenSec-Github) opened issue at [2024-02-08 18:41](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/197): + +Fixed typo in ML04_2023-Membership_Inference_Attack +Found under ML04_2023-Membership_Inference_Attack > Risk Factors > Threat Agents/Attack Vectors + +#### [shsingh](https://github.com/shsingh) commented at [2024-02-13 06:01](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/197#issuecomment-1940476090): + +thanks @NextGenSec-Github ! + +/cc @sagarbhure + +#### [shsingh](https://github.com/shsingh) commented at [2024-02-14 06:58](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/197#issuecomment-1943185472): + +Hi @NextGenSec-Github ... are you please able to resubmit this as a signed commit? Information available here: https://github.com/OWASP/www-project-machine-learning-security-top-10/blob/master/CONTRIBUTING.md#github-information + +#### [NextGenSec-Github](https://github.com/NextGenSec-Github) commented at [2024-02-14 09:11](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/197#issuecomment-1943348223): + +Hey shsingh + +Sorry about the confusion with my recent commits. I got confused and messed up with the signing requests. I've reforked the repo and resubmitted my fix, and i believe the commit should be signed and properly work this time. My apologies. + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-13.198.pr.merged.md b/issues/2024-02-13.198.pr.merged.md new file mode 100644 index 0000000..339550d --- /dev/null +++ b/issues/2024-02-13.198.pr.merged.md @@ -0,0 +1,16 @@ +# [\#198 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/198) `merged`: docs: add slides for Null Hyderabad November 2023 + +#### [shsingh](https://github.com/shsingh) opened issue at [2024-02-13 06:16](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/198): + +- docs: add slides for Null Hyderabad November 2023 +- docs: add slides for Null Hyderabad November 2023 + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-13.199.pr.open.md b/issues/2024-02-13.199.pr.open.md new file mode 100644 index 0000000..fc03328 --- /dev/null +++ b/issues/2024-02-13.199.pr.open.md @@ -0,0 +1,16 @@ +# [\#199 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/199) `open`: update Glossary + +#### [adityoari](https://github.com/adityoari) opened issue at [2024-02-13 12:36](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/199): + +- Add few more terms to main `tab_glossary.md` file +- Copy content of `tab_glossary.md` file to `docs/glossary.md` + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-14.200.pr.open.md b/issues/2024-02-14.200.pr.open.md new file mode 100644 index 0000000..d37c52a --- /dev/null +++ b/issues/2024-02-14.200.pr.open.md @@ -0,0 +1,17 @@ +# [\#200 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/200) `open`: Fixed Typo + +#### [NextGenSec-Github](https://github.com/NextGenSec-Github) opened issue at [2024-02-14 09:01](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/200): + +Fixed typo in ML04_2023-Membership_Inference_Attack +Found under ML04_2023-Membership_Inference_Attack > Risk Factors > Threat Agents/Attack Vectors + +With Signed Request + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-14.201.pr.merged.md b/issues/2024-02-14.201.pr.merged.md new file mode 100644 index 0000000..5843ca7 --- /dev/null +++ b/issues/2024-02-14.201.pr.merged.md @@ -0,0 +1,18 @@ +# [\#201 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/201) `merged`: feat: add Nix flake files + +#### [shsingh](https://github.com/shsingh) opened issue at [2024-02-14 09:09](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/201): + +- refactor: rename 'Model Stealing' to 'Model Theft' +- docs: add slides for Null Hyderabad November 2023 +- docs: add slides for Null Hyderabad November 2023 +- feat: add Nix flake files + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-14.202.pr.merged.md b/issues/2024-02-14.202.pr.merged.md new file mode 100644 index 0000000..6551237 --- /dev/null +++ b/issues/2024-02-14.202.pr.merged.md @@ -0,0 +1,19 @@ +# [\#202 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/202) `merged`: chore: add Benjamin-KY to CODEOWNERS + +#### [shsingh](https://github.com/shsingh) opened issue at [2024-02-14 09:20](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/202): + +- refactor: rename 'Model Stealing' to 'Model Theft' +- docs: add slides for Null Hyderabad November 2023 +- docs: add slides for Null Hyderabad November 2023 +- feat: add Nix flake files +- chore: add Benjamin-KY to CODEOWNERS + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).] diff --git a/issues/2024-02-14.203.pr.merged.md b/issues/2024-02-14.203.pr.merged.md new file mode 100644 index 0000000..7d15d69 --- /dev/null +++ b/issues/2024-02-14.203.pr.merged.md @@ -0,0 +1,30 @@ +# [\#203 PR](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/203) `merged`: chore: add core team members to info + +#### [shsingh](https://github.com/shsingh) opened issue at [2024-02-14 09:46](https://github.com/OWASP/www-project-machine-learning-security-top-10/pull/203): + +- **For contributors:** + +- [ ] Have you followed the guidelines in our Contributing document? +- [ ] Have you checked to ensure there aren't other open [Pull Requests](../../../pulls) for the same update/change? +- [ ] Have you linted your Markdown locally before submission? + +- **Please check if the PR fulfills these requirements:** + +- [ ] The commit message follows our guidelines +- [ ] Docs have been added / updated (for issues and features) + +- **What kind of change does this PR introduce?** (Documentation Issue, Website Issue ...) + +- **Does this PR introduce a breaking change?** + +- **Other information**: + + + + + +------------------------------------------------------------------------------- + + + +[Export of Github issue for [OWASP/www-project-machine-learning-security-top-10](https://github.com/OWASP/www-project-machine-learning-security-top-10).]