DeepSeek AI database exposes user data, chat histories

Occurred: January 2025 

A DeepSeek database leaked the personal details, including chat histories, of around 1 million users of its AI systems, prompting concerns about its security and the privacy of its users.

What happened

Wiz Research discovered the exposed database, which included chat histories and user interactions with one or more of Chinese AI startup DeepSeek's AI systems.

The database also comprised details explaining the company's operations and information necessary to access it's internal system.

The exposure allows potential attackers to gain full control of the database, thereby posing a risk to  DeepSeek and it's users.

Why it happened

The breach appears to have occurred due to DeepSeek's rapid deployment of its generative AI products without taking adequate care about security. 

What it means

The exposure of chat prompts compromises user privacy and potentially allows malicious attackers to impersonate users or access their accounts - putting user data at immediate risk and opening up possibilities for long-term exploitation, identity theft and financial fraud.

System 🤖

Deployer: DeepSeek
Developer: High-Flyer
Country: Global
Sector: Multiple
Purpose: Generate text
Technology: Generative AI; Large language model; Machine learning
Issue: Confidentiality; Privacy; Security

Page info
Type: Issue
Published: January 2025