• 3,000 firms
  • Independent
  • Trusted
Save up to 70% on staff

News » DeepSeek R1 can be tricked into malware creation: Tenable Research

DeepSeek R1 can be tricked into malware creation: Tenable Research

Photo from Tenable Research

MARYLAND, UNITED STATES — Tenable Research has recently discovered that DeepSeek R1, a reasoning large language model (LLM), can be manipulated into generating malware, raising alarms about the potential for AI-powered cybercrime. This vulnerability highlights the urgent need for stronger safeguards in AI development to prevent misuse.

Experiment exposes weaknesses 

To determine DeepSeek R1’s susceptibility, Tenable’s team undertook an experiment to see if the AI could generate two types of malicious software. 

Initially, the AI model resisted these requests, aligning with its design to thwart misuse. However, by employing simple jailbreaking techniques and framing the requests as educational tasks, the researchers successfully bypassed these restrictions. This led to the AI creating an encrypted keylogger and a ransomware executable, showcasing a worrying potential for abuse.

Implications for cybersecurity 

This breakthrough is particularly alarming because it suggests that AI could lower the entry barrier for cybercriminal activities, making advanced tools accessible to novices. 

While the outputs from DeepSeek required further refinement to become fully functional, they represent a significant shift in the landscape of cyber threats.

“Tenable’s research highlights the urgent need for responsible AI development and stronger guardrails to prevent misuse. As AI capabilities evolve, organisations, policymakers, and security experts must work together to ensure that these powerful tools do not become enablers of cybercrime,” said Nick Miles, staff research engineer at Tenable.

Background on AI misuse 

Generative AI has seen a surge in popularity and application, from creating conversational agents to aiding in creative processes. 

Despite built-in safety measures, there’s a growing trend of these technologies being exploited for harmful purposes. This is not limited to unauthorized use of mainstream tools like OpenAI’s ChatGPT but extends to the development of bespoke malicious models like WormGPT and GhostGPT.

Tenable’s ongoing research aims to shed light on the risks associated with these technologies, urging a collective effort from all stakeholders to fortify the defenses against these emerging digital threats. 

Start your
journey today

  • Independent
  • Free
  • Transparent

About OA

Outsource Accelerator is the trusted source of independent information, advisory and expert implementation of Business Process Outsourcing (BPO)

The #1 outsourcing authority

Outsource Accelerator offers the world’s leading aggregator marketplace for outsourcing. It specifically provides the conduit between Philippines outsourcing suppliers and the businesses – clients – across the globe.

The Outsource Accelerator website has over 5,000 articles, 450+ podcast episodes, and a comprehensive directory with 4000+ BPO companies… all designed to make it easier for clients to learn about – and engage with – outsourcing.

About Derek Gallimore

Derek Gallimore has been in business for 20 years, outsourcing for over eight years, and has been living in Manila (the heart of global outsourcing) since 2014. Derek is the founder and CEO of Outsource Accelerator, and is regarded as a leading expert on all things outsourcing.

“Excellent service for outsourcing advice and expertise for my business.”

Learn more
Banner Image
Get 3 Free Quotes Verified Outsourcing Suppliers
3,000 firms.Just 2 minutes to complete.
SAVE UP TO
70% ON STAFF COSTS
Learn more

Connect with over 3,000 outsourcing services providers.

Banner Image

Transform your business with skilled offshore talent.

  • 3,000 firms
  • Simple
  • Transparent
Banner Image