DeepSeek Data Exposed to Web, Cybersecurity Firm Says

The Epoch Times Header

The exposed data included digital software keys and chat logs, according to cybersecurity firm Wiz.

Researchers with cybersecurity company Wiz said on Wednesday that sensitive information from the Chinese artificial intelligence (AI) app DeepSeek was inadvertently exposed to the open internet.

Hangzhou-based DeepSeek prompted a global selloff in tech shares last week when it launched its free, open-source language learning model DeepSeek-R1.

DeepSeekโ€™s flagship v3 model cost $5.6 million to train, amounting to a fraction of the money spent by Americaโ€™s leading tech companies to train models including OpenAIโ€™s ChatGPT.

The popular app has also raised national security concerns in Washington.

In a blog post, Wiz said it set out to assess the external safety of the chatbot and identify any potential vulnerabilities after it saw a surge in registrations and became the most downloaded free app on Appleโ€™s App Store last week.

Within minutes, researchers with the New York-based cybersecurity company found a publicly accessible database linked to the chatbot that was โ€œcompletely open and unauthenticatedโ€ and โ€œexposing sensitive data,โ€ Wiz said.

The database contained more than a million lines of data that were left unsecured, according to Wiz.

This included sensitive information, along with digital software keys, and chat logs that appeared to capture prompts being sent from users to the companyโ€™s free AI assistant, according to the cybersecurity company.

โ€œMore critically, the exposure allowed for full database control and potential privilege escalation within the DeepSeek environment, without any authentication or defense mechanism to the outside world,โ€ the blog post stated.

Wiz said the level of access posed a critical risk to DeepSeekโ€™s security as well as to its end-users, including allowing bad actors to retrieve sensitive information and plain-text chat messages.

Additionally, the vulnerabilities could allow bad actors to exfiltrate plaintext passwords, Wiz said.

The Wiz Research team โ€œimmediately and responsibly disclosed the issue to DeepSeek, which promptly secured the exposure,โ€ according to the blog post.

Wiz noted that the widespread and fast adoption of AI by companies poses ongoing risks, particularly for those that have โ€œrapidly grown into critical infrastructure providers without the security frameworks that typically accompany such widespread adoptions.โ€

Byย Katabella Roberts

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Columns

Canada Should Become Our 51st State!

Canada is in the midst of a hostile takeover by globalists. They are implementing a destructive plan to collapse a free society from within.

A Semi-Automatic Rifle Ban or Not? In Colorado, It Depends Who You Ask

Coloradoโ€™s statute requires semiautomatic rifles and pistols to have fixed magazines that comply with the stateโ€™s ban on so-called large-capacity magazines.

Was 9/11 an Operation Northwoods Style False Flag?

Operation Northwoods was a 1961 false flag event proposal offered by the Joint Chiefs of Staff in conjunction with the CIA to kill some of its own American citizens.

Pope #267 Brings Good News and Bad News

If Pope Leo doesn't undo damage done by Pope Francis, more Catholics could leave the Church, seeing it as irrelevant in not following Christโ€™s teachings.

Epoch Survey Finds Broad Support for Medicaid Reformโ€“But Doubt Congress Can Deliver

Poll reveals support for reforms to Medicaid program, including work requirements and fraud reduction, with skepticism about Congressโ€™s ability to implement changes.

News

Another Air Traffic Control Equipment Outage Impacts Flights at New Jerseyโ€™s Newark Airport

Newark Liberty Int. Airport in NJ experienced another air traffic equipment outage, causing FAA to issue a temporary ground stop for all flights bound for the airport.

Judge Allows CIA to Fire Doctor Who Helped Enforce Military COVID Mandate

The CIA maintained that Adirim was not terminated over politics but because of โ€™multiple complaintsโ€™ from CIA staff about her conduct in the workplace.

Trump Unveils Accelerated Deportation Drive With 20,000 More Officers, UN Agreement

Trump announced the launch of Project Homecoming, a sweeping federal initiative aimed at accelerating removal of illegal immigrants from U.S.

FDA Approves 3 Natural Color Additives Amid Push to Remove Artificial Food Coloring

The U.S. Food and Drug Administration (FDA) has approved three color additives derived from natural sources for use in food products.

Supreme Court Poised to Grapple With Nationwide Injunctions on Trumpโ€™s Orders

One of the many lawsuits contesting President Donald Trumpโ€™s agenda will hit the Supreme Court for oral argument for the first time on May 15.

MTG: My Thoughts on the 2026 Senate Race

If Iโ€™m going to fight for a team, it will only be a team willing to lay it all on the line to save this country. ~ Marjorie Taylor Greene

Fed Interest Rate Cut Would be โ€˜Jet Fuelโ€™ for US Economy, Trump Says

President Donald Trump says the Federal Reserve cutting interest rates would be โ€œjet fuelโ€ for the U.S. economy.
spot_img

Related Articles