DeepSeek's AI success is overshadowed by a serious security breach
DeepSeek's AI success is overshadowed by a serious security breach
Share:
DeepSeek AI. A massive data leak from AI startup DeepSeek has raised alarms about the security of sensitive user data in the rapidly evolving AI industry. Cybersecurity researchers at Wiz recently found a major security lapse at DeepSeek, a Chinese AI startup. The company, known for its DeepSeek-R1 AI model, had left a ClickHouse database exposed — an oversight with serious consequences. Over a million log entries, containing chat history, secret keys, and backend details, were left unprotected in the exposed database. Worse, the database allowed full administrative control without authentication, making it a goldmine for potential attackers.
The exposed data included API secrets, internal logs, and even plaintext chat messages, posing a severe risk to both DeepSeek and its users. Wiz researchers responsibly disclosed the issue to DeepSeek, which promptly secured the database. Wiz's research team identified the issue while analyzing DeepSeek's external security posture. They initially mapped out DeepSeek's internet-facing domains and found several subdomains, most appearing harmless.
However, deeper analysis revealed two unusual open ports — 8123 and 9000 — linked to publicly exposed ClickHouse database instances. These instances were completely unprotected, allowing anyone to access and manipulate data without authentication. Using basic SQL queries through ClickHouse's built-in web interface, Wiz researchers found a table named "log_stream," which contained extensive logs with sensitive information. The logs included timestamps, references to internal DeepSeek API endpoints, and plaintext chat messages, as well as operational metadata.
Such unrestricted access could have allowed attackers to extract passwords, local files, and proprietary data. While the exposure was quickly patched, it raises larger concerns about DeepSeek's infrastructure and the risks tied to its rapid growth. DeepSeek's data leak comes at a pivotal moment for the company. Despite its security lapse, the AI startup has seen a dramatic rise, topping the U.S. App Store and many others worldwide.
The company's rapid success stems from its ability to deliver high-quality AI responses at a fraction of the cost of Western competitors like OpenAI's ChatGPT. However, the very infrastructure that enabled this growth — the lightweight, cost-effective model — also appears to have contributed to its security vulnerabilities. Given the U.S. government's history of restricting Chinese tech firms like Huawei and TikTok, DeepSeek may face regulatory hurdles if concerns over data security persist.
Andrew is a writer and commentator who has been sharing his insights on technology since 2015. He has authored numerous online articles covering a range of topics including Apple, privacy, and security. Andrew joined ... It has been a year since Apple provided insight on its total install base, but on the earnings call Thursday, CEO Tim Cook shared that it is 2.35 billion devices. Apple's latest iPhones are flying off the shelves in some markets, and not in others. Apple CEO Tim Cook says this all comes down to where Apple Intelligence is available, and where it isn't.
A quick blurb in a larger story about increased advertising spend from Amazon suggests Apple may have considered resuming ads on X, but recent controversial acts by Elon Musk may affect its decision. Apple has reported its financial results for the first quarter of 2025, with the holiday sales boosting revenue to a record $124.3 billion in the first results call with new CFO Kevan Parekh. People are exposed to more noise in the United States during special events like the Super Bowl, the Apple Hearing Study has confirmed, with elevated levels happening well before the game takes place.
Amazon's month-end MacBook Air sale delivers prices as low as $799 on models equipped with at least 16GB RAM. Continuing its impressive eighteen-year winning streak, Apple has managed to secure first ranking on Fortune's annual 'Worlds Most Admired Companies' list once again. The Trump tariffs could financially hit Apple's chip production partnership with TSMC, after the President insisted the import taxes will be applied to semiconductors and other specific industries in the near future.
To celebrate the arrival of 2025, I decided to compile a series of Apple's top ten major areas of innovation occurring over the past 25 years. Some of these revolutions are overlooked when looking back at the company's dramatic turnaround and decades of introducing world-changing products. When Apple released not one but two different versions of its new AirPods 4 in September of 2024 it changed the landscape of the company's lineup. And it might just have been a stroke of genius.