Chinese AI company DeepSeek has fixed an exposed back-end database that was spilling sensitive information, including user chat histories and API keys, to the open internet. The DeepSeek database was not protected with a password, allowing anyone on the internet to access more than a million unencrypted logs inside.
Security researchers at cloud giant Wiz said they found the exposed database and alerted DeepSeek, which soon after took the database offline. According to Wired, the Wiz researchers said the exposed chat logs were in Chinese but easily translated. It’s not yet known if anyone else, other than Wiz, found the database before it was secured, nor is it known for how long the database was exposed. DeepSeek did not respond to a request for comment.
Misconfigured databases are often caused by human error, rather than due to malicious intent. DeepSeek has seen viral popularity since its public launch in December.
You Might Also Like
Chinese marketplace DHgate becomes a top US app as trade war intensifies
The Trump trade war has gone viral on TikTok, pushing a Chinese e-commerce app, DHgate, to the top of the...
Hertz says customers’ personal data and driver’s licenses stolen in data breach
Car rental giant Hertz has begun notifying its customers of a data breach that included their personal information and driver’s...
OpenAI plans to phase out GPT-4.5, its largest-ever AI model, from its API
OpenAI said on Monday that it would soon wind down the availability of GPT-4.5, its largest-ever AI model, via its...
Google’s newest AI model is designed to help study dolphin ‘speech’
Google’s AI research lab, Google DeepMind, says that it has created an AI model that can help decipher dolphin vocalizations,...