DeepSeek Breach Opens Floodgates to Dark Web
ID: 119d6070-08c0-5726-83cd-21f8686b6897
STIX ID: report--119d6070-08c0-5726-83cd-21f8686b6897
Feed Name: Dark Reading
DeepSeek experienced a major security failure when researchers found a publicly accessible ClickHouse database exposing over a million log entries with chat histories, API keys, backend metadata and PII; the iOS app disabled App Transport Security and used deprecated 3DES with hard-coded keys, researchers also identified SQL injection and weak cryptographic protections, the model showed high susceptibility to jailbreak and prompt-injection tests, and phishing sites targeting users have already emerged—exposed assets are likely to be monetized on Dark Web marketplaces, creating significant operational, reputational and fraud risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
