Scammers are taking advantage of the newfound popularity of the China-based AI app DeepSeek, according to researchers at ESET.
DeepSeek released its generative AI tool last month, and it’s since overtaken ChatGPT as the top free app in Apple’s App Store. Users are now spotting lookalike domains designed to deliver malware or steal information. Other scams offer users the opportunity to buy phony stocks in DeepSeek.
“Whether it's a viral new app, a juggernaut social media platform, or an AI tool, cybercriminals are highly adept at weaving the latest fads and trends into their ploys, ultimately making the ruses more enticing and harder to spot,” ESET says.
“To protect yourself from DeepSeek-themed scams, keep your eyes peeled for any email or social media messages that attempt to piggyback off its popularity and push you to click on suspicious links.”
The researchers add that a healthy sense of suspicion can help users avoid falling for social engineering attacks.
“Indeed, as AI tools can be harnessed to create highly convincing phishing campaigns and other social engineering attacks, be skeptical of messages that arrive out of the blue, particularly if they offer something too good to be true such as investment opportunities or create a sense of urgency,” the researchers write.
“You’re better off contacting the company or person mentioned in the messages directly via verified channels and navigating to the official website by typing it into your web browser.”
Users should follow security best practices and maintain awareness around sharing sensitive data.
“Strengthen your online accounts with two-factor authentication (2FA) wherever possible so that it’s far harder for cybercriminals to access your accounts even if they obtain your credentials,” ESET concludes. “Make sure to also use multilayered security software across all your devices that can go a long way towards keeping you safe. More broadly, when interacting with DeepSeek or, indeed, any other AI model, be mindful of the data you’re entering into it, including names, email addresses, and sensitive personal preferences.”
KnowBe4 empowers your workforce to make smarter security decisions every day. Over 70,000 organizations worldwide trust the KnowBe4 platform to strengthen their security culture and reduce human risk.
ESET has the story.