Home / Article

NowSecure Warns of Critical Security Vulnerabilities in DeepSeek iOS App

Burstable News - Business and Technology News February 7, 2025
By Burstable News Staff
Read Original Article →
NowSecure Warns of Critical Security Vulnerabilities in DeepSeek iOS App

Summary

A comprehensive security assessment reveals multiple severe privacy and security risks in the DeepSeek iOS mobile app, potentially exposing sensitive user data and corporate information to unauthorized access and surveillance.

Full Article

Mobile security firm NowSecure has uncovered significant security vulnerabilities in the DeepSeek iOS mobile app that could compromise enterprise and government data security. The research identified multiple critical issues that expose user information and potentially enable unauthorized data interception.

The security assessment revealed several alarming vulnerabilities, including unencrypted data transmission, insecure credential storage, and the app's ability to bypass iOS privacy controls. Of particular concern is the app's data transmission to Volcengine, a cloud platform operated by ByteDance, which raises potential surveillance and data governance risks.

These security flaws could have substantial implications for organizations, potentially allowing unauthorized access to intellectual property, corporate secrets, and sensitive information. The vulnerabilities are especially critical given DeepSeek's popularity as a top-ranked AI mobile application.

Key risks include the transmission of sensitive data without encryption, making it susceptible to Man-in-the-Middle attacks, and the storage of usernames, passwords, and encryption keys in an insecure manner. The app also reportedly uses outdated encryption algorithms and transmits data to third-party platforms under potentially problematic jurisdictional control.

NowSecure recommends that enterprises and government agencies immediately discontinue using the DeepSeek iOS app and consider alternative AI solutions with more robust security measures. The firm emphasizes the importance of continuous mobile app security monitoring to mitigate emerging risks in the rapidly evolving digital landscape.

QR Code for Content Provenance

This story is based on an article that was registered on the blockchain. The original source content used for this article is located at News Direct

Article Control ID: 37234