GMAsia
    🇸🇬新加坡·AI 新聞·2026年8月25日·來源: Straitstimes

    China’s hackers use DeepSeek for attacks, researchers say

    內容只提供英文版本

    Chinese state-affiliated hacking groups have more than doubled their attack volume after integrating DeepSeek and other open-source AI models into their operations. TeamT5, a Taiwanese research firm, reports that these groups use AI for mundane tasks and to develop advanced malicious software. DeepSeek is favored by hackers due to its high performance, customizability, and relatively lax cybersecurity barriers, despite more powerful domestic models like Moonshot's Kimi K3 being available. The AI models are used across multiple stages of an attack, including reconnaissance and generating exploit codes for vulnerabilities. In some cases, American AI models like ChatGPT have also been used by Chinese hacking software vendors.

    Nexa 摘要

    Chinese state-affiliated cyber groups have significantly escalated their attack capabilities by adopting open-source AI models, particularly DeepSeek. TeamT5 reports a doubling of attacks, with AI assisting in tasks from reconnaissance to exploit code generation. DeepSeek's appeal to hackers stems from its balance of performance, customizability, and low operational cost, rather than being the most powerful model available. This points to a pragmatic approach by threat actors in Asia, prioritizing accessible and effective tools over cutting-edge but potentially more restricted or expensive alternatives like Kimi K3. The integration of AI into cyber operations by groups such as Grimfengxi and Huapi demonstrates a clear shift in tactics. While US national security officials worry about advanced models, observed activity shows even less capable AI is being effectively weaponized. The use of American AI, such as ChatGPT by a hacking software company to decrypt a Signal database, further complicates the cybersecurity landscape, highlighting the dual-use nature of AI tools and the challenges in enforcing ethical guidelines across borders. The thing to watch for Asian enterprises is the increasing sophistication and scale of attacks, even from less advanced AI. The low cost and accessibility of models like DeepSeek mean that the barrier to entry for developing advanced malicious software is dropping. Companies in the region must anticipate a higher volume of AI-assisted threats and strengthen their defenses against automated reconnaissance and exploit generation.

    原文報道: Straitstimes我們不轉載全文, 閱讀原文 →

    相關文章

    6 則