HomeTechWhat is DeepSeek AI? Is it safe? Here's everything you need to...

What is DeepSeek AI? Is it safe? Here's everything you need to know


Data privacy worries that circulated on TikTok, the Chinese-owned social media app nowĀ somewhat bannedĀ in the US, are alsoĀ cropping upĀ around DeepSeek.Ā 

Earlier this month, Feroot Security CEO Ivan TsarynnyĀ told ABCĀ that his firm had discovered “direct links to servers and to companies in China that are under the control of the Chinese government,” which he said they “have never seen in the past.”

Also:Ā ChatGPT’s Deep Research identified 20 jobs it will replace. Is yours on the list?

After decrypting some of DeepSeek’s code, Feroot found hidden programming that can send user data, including identifying information, queries, and online activity, to China Mobile, a Chinese government-operated telecom company banned from operating in the USĀ since 2019 due to national security concerns.

NowSecure recommendedĀ that organizations “forbid” the use of DeepSeek’s mobile app after finding several flaws including unencrypted data (meaning anyone monitoring traffic can intercept it) and poor data storage.

Last week, research firm WizĀ discoveredĀ that an internal DeepSeek database was publicly accessible “within minutes” of conducting a security check. The “completely open and unauthenticated” database contained chat histories, user API keys, and sensitive data.

Also:Ā Why rebooting your phone daily is your best defense against zero-click hackers

“More critically, the exposure allowed for full database control and potentialĀ privilege escalationĀ within the DeepSeek environment, without any authentication or defense mechanism to the outside world,” Wiz’s report explained.

According toĀ Wired, which initially published the research, though Wiz did not receive a response from DeepSeek, the database appeared to be taken down within 30 minutes of Wiz notifying the company. It’s unclear how long it was accessible or if any other entity discovered the database before it was taken down.Ā 

Even without this alarming development, DeepSeek’sĀ privacy policyĀ raises some red flags. It states: “The personal information we collect from you may be stored on a server located outside the country where you live. We store the information we collect in secure servers located in the People’s Republic of China.”

Also:Ā ‘Humanity’s Last Exam’ benchmark is stumping top AI models – can you do any better?

The policy outlines that DeepSeek collects plenty of information, including but not limited to:

  • IP address, unique device identifiers, and cookies
  • Date of birth (where applicable), username, email address and/or telephone number, and password
  • Your text or audio input, prompt, uploaded files, feedback, chat history, or other content that you provide to our model and services
  • Proof of identity or age, feedback, or inquiries about your use of the Service [If you contact DeepSeek]

The policy continues: “Where we transfer any personal information out of the country where you live, including for one or more of the purposes as set out in this Policy, we will do so in accordance with the requirements of applicable data protection laws.” The policy does not mentionĀ GDPR compliance.

Also:Ā Apple researchers reveal the secret sauce behind DeepSeek AI

“Users need to be aware that any data shared with the platform could be subject to government access under China’s cybersecurity laws, which mandate that companies provide access to data upon request by authorities,” Adrianus Warmenhoven, a member ofĀ NordVPN‘s security advisory board, told ZDNET via email.

According to some observers, R1’s open-source nature means increased transparency, allowing users to inspect the model’s source code for signs of privacy-related activity.Ā 

DeepSeek has also released smaller versions of R1, which can be downloaded and run locally to avoid any concerns about data being sent back to the company (as opposed to accessing the chatbot online).Ā 

Also:Ā ChatGPT privacy tips: Two important ways to limit the data you share with OpenAI

All chatbots, including ChatGPT, collect some degree of user data when queried via the browser.Ā 





Source link

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -

Most Popular

Recent Comments