DeepSeek accidentally built a working ransomware strain, experts note, 'What we are witnessing is a fundamental…

https://cdn.mos.cms.futurecdn.net/FMwRmCw7wxB7F6AQgqzqnX-1920-80.jpg
  • DeepSeek connected a theoretical browser flaw to a working attack chain
  • The ransomware sample targets Android's photo folder through a fake permission prompt
  • Check Point classified 1,383 DeepSeek-linked files as malicious or dangerous

A Chinese AI model accidentally stumbled into a working ransomware technique while trying to satisfy an unrealistic, broad prompt.

New findings from Check Point Research say the DeepSeek-generated sample connected a theoretical browser risk to a functioning attack method, requiring no exploit, no app installation, and no real technical skill from the attacker.

It targets Android's photo storage through a legitimate browser feature called the File System Access API, disguised as a simple AI photo-enhancing tool.

How the attack actually works

The technique abuses Android's DCIM folder, which typically holds years of personal photos, scanned identification documents, and banking screenshots.

Victims grant access through a single permission prompt disguised as an AI-powered photo enhancer, unaware they are...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more