Understanding security and privacy implications is paramount in today's rapidly evolving AI landscape. Clay Gooch, Senior Director of vCISO Consulting, sheds light on the potential risks associated with platforms like #DeepSeek and emphasizes the need for robust safeguards. ? As organizations continue to navigate these complexities, having experienced security leaders to assess and address emerging threats is more important than ever.?Many companies are already leveraging #GenAI in various capacities—but without full visibility into where and how it’s being used, they risk exposing themselves to new security and privacy challenges. As AI adoption accelerates, what security concerns are top of mind for your organization? #AI #DataPrivacy #RiskManagement #vCISO
The latest analysis from KrebsOnSecurity of DeepSeek's mobile apps reveals concerning security practices that every CISO and security leader needs to be aware of. Hard-coded encryption keys, disabled transport security, and unencrypted data transmission aren't just bad practices - they're textbook examples of how not to handle sensitive data. Most concerning is the systematic disabling of Apple's App Transport Security (ATS) and the use of deprecated 3DES encryption. When developers bypass platform security controls and use outdated cryptographic methods, it's rarely an oversight - it's usually a sign of deeper security governance issues. For organizations considering AI adoption: This is why security assessments need to happen before deployment, not after. The rapid climb to #1 on app stores shouldn't overshadow fundamental security requirements. As the report shows, popularity and security can be inversely related. Read more here: https://lnkd.in/gzGmCayf #CyberSecurity #AppSecurity #RiskManagement #AISecurity #DeepSeek #SecurityFirst