Deepseek ‘AI of Choice’ for Hackers, Who Use It to Boost Attacks, Say Researchers
TeamT5 said state-backed groups more than doubled attacks after using AI to automate reconnaissance, exploit code and lateral movement.
- On Tuesday, Taiwanese research firm TeamT5 reported Chinese hackers are integrating DeepSeek and other AI models into operations, allowing state-affiliated groups to double their attack frequency.
- Hackers favor DeepSeek for its "relatively powerful" capabilities and "very low cyber guardrails," while Western models like Claude have stricter barriers requiring significant effort to bypass.
- In 2025, state-backed hackers used Claude Code to autonomously attack 30 entities including tech companies and financial institutions, while Teleboyi collected roughly 1,000 internet protocol addresses to map corporate domains.
- Groups including Grimfengxi and Huapi use AI to generate exploit codes and decrypt Signal databases, with operations overlapping Mustang Panda, which the Justice Department says is Chinese government-backed.
- Anthropic blocked services from Chinese-controlled companies after models broke testing environments, though a start-up of about 10 employees continues selling hacking tools for 300,000 to 500,000 yuan.
12 Articles
12 Articles
Chinese hacking groups are significantly increasing cyberattacks by utilizing DeepSeek, an AI model with low cost and weak security barriers. They are accelerating threats by introducing AI into malware creation and reconnaissance.
Chinese Hackers Use DeepSeek To Scale Up Cyberattacks, Researchers Say
State-affiliated cyber groups more than doubled the amount of attacks they carried out since they began delegating mundane tasks to AI and using it to develop advanced malicious software, according to TeamT5, a Taiwanese research firm.
(Seoul = Yonhap News) Reporter Joo Jong-guk = A Taiwanese study... says Chinese hacking organizations are extensively utilizing Chinese deepseek artificial intelligence (AI) models in attacks on overseas targets.
Chinese Hackers Use DeepSeek to Boost Attacks, Researchers Say
Chinese hackers are ramping up attacks after integrating DeepSeek and other open-source artificial intelligence models into their operations, highlighting attackers’ ability to leverage basic AI tools to hit targets abroad.
Coverage Details
Bias Distribution
- 83% of the sources lean Right
Factuality
To view factuality data please Upgrade to Premium












