DeepSeek database with private data and chat logs was exposed to the internet

Needs to tighten up its security, it seems.
 By 
Stan Schroeder
 on 
DeepSeek app seen on a smartphone screen.
Perhaps handing over sensitive data to DeepSeek isn't the best idea. Credit: MLADEN ANTONOV / Getty Images

Chinese AI DeepSeek is incredibly popular right now, but you should be careful about handing it any of your private data.

Researchers over at Wiz reported on Wednesday that they identified a publicly accessible database belonging to DeepSeek, which in turned allowed anyone to access DeepSeek's internal data.

This data included chat logs, secret keys, and other sensitive information, Wiz claims. The text was in Chinese, but that's hardly an issue these days when anyone can use machine translation to translate it.


You May Also Like

Upon its discovery, Wiz promptly disclosed the issue to DeepSeek, which fixed the error. However, it's the type of security flaw that should make you think twice before you use DeepSeek for anything that requires you to hand over even remotely sensitive data.

The details describing the issue are on Wiz's blog, but it boils down to DeepSeek using a ClickHouse database which was accessible without any authentication. Anyone who found this database could have executed an SQL query to get access to more than 1 million log entries, with timestamps, chat logs in plain text, and other metadata that a malicious hacker could've use to extract sensitive information belonging to DeepSeek users.

DeepSeek didn't publicly comment on the issue, and it's unclear whether this security flaw was abused by a third party before Wiz found out about it.

We've contacted DeepSeek about this issue and will update this article when we hear back.

Chinese AI lab DeepSeek has gotten an enormous amount of attention since it launched the latest version of its LLM, DeepSeek R1, earlier in January. DeepSeek R1 beats the best LLMs from U.S. companies, including those from OpenAI, in several key benchmarks, while reportedly being trained with significantly fewer resources. The company's iOS app quickly rose to the top of Apple's App Store, and its launch caused chaos in the U.S. stock market, shaving hundreds of billions off of Nvidia's market cap as the market suddenly anticipated weaker demand for Nvidia hardware.

Since then, several researchers pointed out security weaknesses and privacy issues in the way DeepSeek processes and stores user data.

Stan Schroeder
Stan Schroeder
Senior Editor

Stan is a Senior Editor at Mashable, where he has worked since 2007. He's got more battery-powered gadgets and band t-shirts than you. He writes about the next groundbreaking thing. Typically, this is a phone, a coin, or a car. His ultimate goal is to know something about everything.

Mashable Potato

Recommended For You
DeepSeek v3.2: What's new and how does it compare to ChatGPT?
DeepSeek logo

Petco reveals a hack exposed customer data in these states
A Petco logo is displayed outside their store

Hackers threaten to leak massive 'Wired' customer database
 Signage is seen during WIRED's The Big Interview 2025

iOS 26 Messages brings transformative new group chat features
iOS 26 update displayed on a phone screen is seen in this illustration photo taken in Krakow, Poland on September 17, 2025.

'Stranger Things' and 'KPop Demon Hunters' get Netflix yule logs
Three themed virtual fireplaces based on 'Stranger Things,' 'KPop Demon Hunters,' and 'Wednesday.'

Trending on Mashable
NYT Connections hints today: Clues, answers for February 4, 2026
Connections game on a smartphone

Wordle today: Answer, hints for February 4, 2026
Wordle game on a smartphone

NYT Strands hints, answers for February 4, 2026
A game being played on a smartphone.

ChatGPT caricature trend: What it is, prompt to try it.
Artist drawing caricature

Anthropic Super Bowl LX ads mock ChatGPT
screenshot of anthropic super bowl lx ads featuring handsome black actor and words 'ads are coming to chatgpt. but not to claude.'
The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!