DeepSeek accidentally built a working ransomware strain, experts note, 'What we are witnessing is a fundamental…
- DeepSeek connected a theoretical browser flaw to a working attack chain
- The ransomware sample targets Android's photo folder through a fake permission prompt
- Check Point classified 1,383 DeepSeek-linked files as malicious or dangerous
A Chinese AI model accidentally stumbled into a working ransomware technique while trying to satisfy an unrealistic, broad prompt.
New findings from Check Point Research say the DeepSeek-generated sample connected a theoretical browser risk to a functioning attack method, requiring no exploit, no app installation, and no real technical skill from the attacker.
It targets Android's photo storage through a legitimate browser feature called the File System Access API, disguised as a simple AI photo-enhancing tool.
How the attack actually works
The technique abuses Android's DCIM folder, which typically holds years of personal photos, scanned identification documents, and banking screenshots.
Victims grant access through a single permission prompt disguised as an AI-powered photo enhancer, unaware they are...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE