TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Multiple Security and Privacy Flaws in DeepSeek iOS Mobile App

17 点作者 ahoog424 个月前

3 条评论

suraci4 个月前
&gt; Unencrypted Data Transmission<p>&gt; Weak &amp; Hardcoded Encryption Keys<p>&gt; Insecure Data Storage<p>you know they&#x27;re not kidding when they said that deepseek is just a side-project...<p>&gt; However, there are multiple reasons why companies might send data to servers in the current country including performance, regulatory, or more nefariously to mask where the data will ultimately be sent or processed.<p>thought i&#x27;m very glad to see it&#x27;s demonized, as long as it can force these companies changing their mindset abt security<p>i talked abt this problem elsewhere[Exposed DeepSeek database leaking sensitive information, including chat history](<a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42871371">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42871371</a>):<p>&gt; this industry in china is so young, many devs and orgs don&#x27;t understand what will happened if they shutdown the firewall or expose their database on the internet without a password, they just, can&#x27;t think of it, need someone to remind them
ratg134 个月前
3DES .. no other explanation than this was an intentional choice to allow the traffic to be inspected&#x2F;harvested by big red
评论 #43119846 未加载
评论 #42968870 未加载
AtomicOrbital4 个月前
android also insecure?
评论 #42968846 未加载