TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Multiple Security and Privacy Flaws in DeepSeek iOS Mobile App

17 pointsby ahoog423 months ago

3 comments

suraci3 months ago
&gt; Unencrypted Data Transmission<p>&gt; Weak &amp; Hardcoded Encryption Keys<p>&gt; Insecure Data Storage<p>you know they&#x27;re not kidding when they said that deepseek is just a side-project...<p>&gt; However, there are multiple reasons why companies might send data to servers in the current country including performance, regulatory, or more nefariously to mask where the data will ultimately be sent or processed.<p>thought i&#x27;m very glad to see it&#x27;s demonized, as long as it can force these companies changing their mindset abt security<p>i talked abt this problem elsewhere[Exposed DeepSeek database leaking sensitive information, including chat history](<a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42871371">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42871371</a>):<p>&gt; this industry in china is so young, many devs and orgs don&#x27;t understand what will happened if they shutdown the firewall or expose their database on the internet without a password, they just, can&#x27;t think of it, need someone to remind them
ratg133 months ago
3DES .. no other explanation than this was an intentional choice to allow the traffic to be inspected&#x2F;harvested by big red
评论 #43119846 未加载
评论 #42968870 未加载
AtomicOrbital3 months ago
android also insecure?
评论 #42968846 未加载