DeepSeek Data Exposed to Web, Cybersecurity Firm Says

The Epoch Times Header

The exposed data included digital software keys and chat logs, according to cybersecurity firm Wiz.

Researchers with cybersecurity company Wiz said on Wednesday that sensitive information from the Chinese artificial intelligence (AI) app DeepSeek was inadvertently exposed to the open internet.

Hangzhou-based DeepSeek prompted a global selloff in tech shares last week when it launched its free, open-source language learning model DeepSeek-R1.

DeepSeek’s flagship v3 model cost $5.6 million to train, amounting to a fraction of the money spent by America’s leading tech companies to train models including OpenAI’s ChatGPT.

The popular app has also raised national security concerns in Washington.

In a blog post, Wiz said it set out to assess the external safety of the chatbot and identify any potential vulnerabilities after it saw a surge in registrations and became the most downloaded free app on Apple’s App Store last week.

Within minutes, researchers with the New York-based cybersecurity company found a publicly accessible database linked to the chatbot that was “completely open and unauthenticated” and “exposing sensitive data,” Wiz said.

The database contained more than a million lines of data that were left unsecured, according to Wiz.

This included sensitive information, along with digital software keys, and chat logs that appeared to capture prompts being sent from users to the company’s free AI assistant, according to the cybersecurity company.

“More critically, the exposure allowed for full database control and potential privilege escalation within the DeepSeek environment, without any authentication or defense mechanism to the outside world,” the blog post stated.

Wiz said the level of access posed a critical risk to DeepSeek’s security as well as to its end-users, including allowing bad actors to retrieve sensitive information and plain-text chat messages.

Additionally, the vulnerabilities could allow bad actors to exfiltrate plaintext passwords, Wiz said.

The Wiz Research team “immediately and responsibly disclosed the issue to DeepSeek, which promptly secured the exposure,” according to the blog post.

Wiz noted that the widespread and fast adoption of AI by companies poses ongoing risks, particularly for those that have “rapidly grown into critical infrastructure providers without the security frameworks that typically accompany such widespread adoptions.”

By Katabella Roberts

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Columns

DOGE and Musk Recover Deleted Computer Files

Elon Musk and his “Geek Squad” discovered an entire terabyte of data was deleted from government servers from the office of the “Institute of Peace”.

A Simple Question

What is a woman? Anyone with an IQ above room temperature can answer the question. Everyone, that is, except Democrats.

Democrats Tesla Takedown is a Proven Astro Turf Movement

Elon Musk and other journalistic leaders like Joe Rogan have been asking the critical question, “Who is behind the organization of these Tesla protests?”

Can Ramaphosa and Trump Come to Terms?

Whether South Africa can quell the hostility emanating from Washington, without compromising on its national priorities, is a formidable test for a country

Maddened Europe

Viable prospects for peaceful settlement of conflict between Moscow and Kyiv exist, but Europe obsesses over threat of incursion onto European territory.

News

US Immigration Services Drops 3rd Gender Option

US immigration services agency officially updated policy to recognize only two biological sexes—male and female—for all immigration-related doc and benefit requests.

Transgender Covenant School Killer Planned Attack for Years, Final Police Report Says

Transgender shooter in mass killing at Christian school in Nashville, TN was an alumnus motivated by a quest for notoriety, final police report concludes.

Supreme Court Reviews South Carolina’s Medicaid Funding Block on Planned Parenthood

U.S. Supreme Court weighed whether South Carolina can stop abortion provider Planned Parenthood from taking part in state’s Medicaid program.

Africa at Crossroads After $13 Billion US Aid Cut, Say Analysts

African countries reacted with shock when the U.S. government recently cut $13 billion in financial assistance.

Trump Admin Ordered to Restore Legal Aid for Unaccompanied Minors

Judge in CA ordered Trump admin to restore funding for nonprofits providing legal services to unaccompanied illegal immigrant children who entered US.

Val Kilmer, Star of ‘Top Gun’ and ‘Batman,’ Dies at 65

Actor Val Kilmer, best known for his roles in movies “Top Gun,” “The Doors,” and “Batman Forever,” died on April 1 at age 65, his daughter confirmed.

Princeton Says Trump Administration Has Suspended Dozens of Research Grants

Trump admin has suspended several dozen federally funded research grants to Princeton University as part of its investigation into campus anti-Semitism.

How Trump’s ‘Liberation Day’ Tariffs Are Set to Reshape Global Trade

President Donald Trump is set to announce reciprocal tariffs for all nations starting April 2, the date he has dubbed “Liberation Day.”
spot_img

Related Articles

Popular Categories

MAGA Business Central