Mark RadarMARK RADAR
About
EN
Sign in
Event File AI AI Safety GitHub

Hackers Exploit DeepSeek V4 Name to Spread Malware

1 reports · First detected 2026-05-06 · Last active 2026-05-06

DeepSeek V4 drew intense interest from developers following its release, making its name an attractive social-engineering lure. Microsoft’s threat intelligence team said attackers exploited users’ eagerness to download the new model by distributing software through projects posing as official repositories, highlighting supply-chain risks surrounding popular generative AI releases.

Microsoft recently found that hackers quickly created fraudulent GitHub repositories after DeepSeek V4’s release, tricking users into downloading the Vidar information stealer and GhostSocks proxy malware. Microsoft advised users to avoid unverified installers and obtain the model through DeepSeek’s official API or Hugging Face.

All Coverage

1 original reports

The Backstory

The history behind this event

This is the first time the radar has seen this story

See the “AI Safety” timeline →
Mark Radar|MARK RADAR

If you search news on Google, you can set Mark Radar as a preferred source—our coverage will show up more often in your results. Set as preferred source on Google →

All times are in Taipei time (GMT+8)