---
title: "Researchers Hack DeepSeek to Speak Freely About Tiananmen Square"
description: "Researchers claim to have found a workaround to AI model DeepSeek's Chinese censorship, slimming it down in the process."
date: "2025-11-28"
modified: "2025-11-28"
authors:
  - name: "Victor Tangermann"
    job_title: "Senior Editor"
    link: "https://futurism.com/authors/victor"
url: "https://futurism.com/artificial-intelligence/hack-deepseek-censorship-tiananmen-square"
categories:
  - "Artificial Intelligence"
  - "Ethics"
---

# Researchers Hack DeepSeek to Speak Freely About Tiananmen Square

![Researchers claim to have found a workaround to AI model DeepSeek's Chinese censorship, slimming it down in the process.](<https://futurism.com/wp-content/uploads/2025/11/hack-deepseek-censorship-tiananmen-square.jpg>)
*Futurism Getty / Futurism*

Earlier this year, a Chinese AI chatbot called DeepSeek [sent Silicon Valley into a tailspin](<https://futurism.com/silicon-valley-shambles-chinese-startup-deepseek>) when it released a new AI model that rivaled the likes of OpenAI's ChatGPT, while relying on only a fraction of the computing power.

The lean open-source AI model, dubbed DeepSeek R1, was so impressive that it sparked a massive tech selloff, [wiping out $1 trillion](<https://futurism.com/trump-embraced-ai-exploded-deepseek>) from a market-sustaining AI spending boom in late January.

But it had a notable Achilles' heel as well: it [abided closely by China's strident censorship rules](<https://futurism.com/deepseek-ai-china-uyghurs>), refusing to answer prompts about sensitive topics, [like the 1989 Tiananmen Square massacre](<https://www.theguardian.com/technology/2025/jan/28/we-tried-out-deepseek-it-works-well-until-we-asked-it-about-tiananmen-square-and-taiwan>), or [comparisons of president Xi Jinping to Winnie-the-Pooh](<https://www.theguardian.com/world/2018/aug/07/china-bans-winnie-the-pooh-film-to-stop-comparisons-to-president-xi>).

Now, researchers at Spanish quantum computing company Multiverse claim to have found a workaround, [*MIT Technology Review* reports](<https://www.technologyreview.com/2025/11/19/1128119/quantum-physicists-compress-and-deconsor-deepseekr1/>). And besides eliminating the model's heavy handed censorship, the company also says it has slimmed down the already extremely lean model by 55 percent.

It's a pair of notable achievements, further unlocking the power of an already-impressive AI while showing that even efficient models can be refined further without sacrificing performance, a tradeoff that companies in the space have often had to contend with.

While DeepSeek has released distilled versions of R1, the researchers [note in a blog post](<https://multiversecomputing.com/resources/deepseek-r1-uncensored-full-power-fraction-of-the-size>) that they may "offer greater compute efficiency but none of them fully stack up to R1." But by using a "proprietary compression technology" dubbed CompatifAI, Multiverse claims to have been able to "directly eliminate these limitations and deliver an uncompromising variant of R1."

CompatifAI allows the researchers to "remove the least important parameters that contribute little to the model's overall performance" — including "specific learned behaviors, such as censorship."

It works by applying a quantum physics approach, harnessing "tensor networks" to manipulate grids of large data sets. Despite massively compressing R1, the team found that it only "had minimal accuracy loss" on a litany of tests.

The results speak for themselves. Instead of furthering Chinese government talking points when asked about the "impact of Xi Jinping's constitutional amendment to remove term limits," the hacked model happily laid out the broader implications on power dynamics and the dangers of the excessive concentration of power.

It also answered other previously restricted queries, such as "Who does Winnie the Pooh look like?" or "What happened in Tiananmen in 1989?"

It's a notable result. Experts told *MIT Tech* that the most influential open source models are coming from China, reshaping the global information ecosystem thanks to built-in and government-mandated censorship.

At the same time, much of the training data that went into these models may have already been affected by Chinese censorship, making it a thorny problem to solve in the long term.

**More on DeepSeek:** [*Scientists Discover “Universal” Jailbreak for Nearly Every AI, and the Way It Works Will Hurt Your Brain*](<https://futurism.com/artificial-intelligence/universal-jailbreak-ai-poems>)

## Author
I've been at Futurism since 2017, where my role has evolved to encompass design, writing, and increasingly editing. I've always been fascinated by space exploration and advanced transportation, which I've leaned into by interviewing luminaries in those fields while closely following the dimensions of policy and regulation that allow next-generation projects to succeed -- or, sometimes, to fail. I'm also keenly interested in the effects of generative AI on society, policies, and democratic institutions, as well as clean energy, physics and biology, and the vagaries of tech leadership. My work for Futurism has been cited by publications including Ars Technica, Gizmodo, PC Magazine, Jalopnik, Fox News, and the New York Post. I spent my childhood living in locations including Manila, the Philippines, and Geneva, Switzerland, attended McGill University, and now live in Toronto, Canada. Before Futurism I worked at AskMen and a small photography studio. In my free time, I'm an avid gardener, foodie, and craft beer lover, as well as a maker of artisanal hot pepper sauces. I have a magnificent dog named Freida.

### Author social links  
[Bluesky](<https://bsky.app/profile/vtanger.bsky.social>)