logo

What You Need To Know About DeepSeek Security Issues and Vulnerabilities

ID: fe1ca7f5-a553-55f4-a426-2789ec47891e

STIX ID: report--fe1ca7f5-a553-55f4-a426-2789ec47891e

Feed Name: SecurityScorecard Blog

Threat Score
70/100

Date Published: 2025-06-10

Date Updated: 2026-04-29

...
...

DeepSeek, a Chinese AI application, has been flagged by SecurityScorecard researchers for numerous security and privacy issues — hardcoded encryption keys, weak cryptography, plaintext credentials, improper file permissions, excessive permissions and telemetry collection, potential SQL injection and remote code execution vectors, and unexplained data flows to Chinese entities (including integration with ByteDance). While no active exploitation or TTPs were observed, multiple governments and agencies have restricted or scrutinized the app due to national-security and data-sovereignty concerns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.