Build a lasting personal brand

Critical Security Vulnerabilities Found in DeepSeek iOS App Threaten User Data

By Editorial Staff

TL;DR

DeepSeek iOS app's security flaws create opportunities for alternative AI solutions to gain market share.

NowSecure identified critical security vulnerabilities in DeepSeek iOS app, including unencrypted data transmission and hardcoded encryption keys.

Ceasing DeepSeek iOS app usage is vital to protect intellectual property, corporate secrets, and national security, making the world safer.

DeepSeek iOS app's security issues highlight the importance of continuous mobile app security monitoring and risk assessment.

Found this article helpful?

Share it with your network and spread the knowledge!

Critical Security Vulnerabilities Found in DeepSeek iOS App Threaten User Data

Mobile security researchers at NowSecure have identified critical security vulnerabilities within the DeepSeek iOS mobile app, a top-ranked AI application since its launch in late January 2025. These flaws could compromise sensitive user and organizational data, highlighting a pressing concern for enterprises, government entities, and millions of users worldwide.

The assessment uncovered several key vulnerabilities, including unencrypted data transmission, making user information vulnerable to Man-in-the-Middle attacks, and insecure storage of credentials and encryption keys. Additionally, the app's data transmission to Volcengine, a cloud platform by ByteDance, raises data governance and potential surveillance concerns. The app also bypasses iOS privacy controls like App Transport Security and lacks necessary Privacy Manifests, increasing risks of tracking and unauthorized data collection.

Security experts urge high-risk organizations to stop using the DeepSeek iOS app immediately. Although the Android version remains untested, similar vulnerabilities are presumed. Alternatives such as self-hosting the DeepSeek AI model or opting for more secure AI tools are recommended. This situation underscores the necessity for ongoing mobile app security monitoring, as mobile applications present a dynamic and often neglected attack surface that could endanger intellectual property, corporate secrets, and national security infrastructure.

NowSecure's findings aim to spotlight the hidden dangers in mobile applications and advocate for proactive security evaluations across digital platforms, emphasizing the critical need for vigilance in the rapidly evolving tech landscape.

Curated from News Direct

blockchain registration record for this content
Editorial Staff

Editorial Staff

@editorial-staff

Newswriter.ai is a hosted solution designed to help businesses build an audience and enhance their AIO and SEO press release strategies by automatically providing fresh, unique, and brand-aligned business news content. It eliminates the overhead of engineering, maintenance, and content creation, offering an easy, no-developer-needed implementation that works on any website. The service focuses on boosting site authority with vertically-aligned stories that are guaranteed unique and compliant with Google's E-E-A-T guidelines to keep your site dynamic and engaging.