Gizmodo: “A cybersecurity company is warning businesses and organizations not to use a popular app from the generative AI company DeepSeek, saying that the program contains a number of security vulnerabilities that could compromise users’ data. The DeepSeek app, which shocked the stock market when it moved to the top of the Apple App Store in January, transmits data unencrypted over the internet and insecurely stores usernames, passwords, and other credentials, according to an analysis by mobile app security firm NowSecure. The vulnerabilities the firm found affect the mobile app through which many users access DeepSeek’s AI models, not the models themselves, which can also be run locally on a user’s device or through a separate hosting platform. “Because mobile apps change quickly and are a largely unprotected attack surface, they present a very real risk to companies and consumers,” NowSecure wrote. “DeepSeek is high profile, but not unique.” Analyzing the DeepSeek app’s performance on real phones, NowSecure found that the iPhone version came with an important security feature designed by Apple turned off…”