Detailed comparison for LLMs
On Guardion's LLM vulnerability Benchmark, Google Gemini 2.5 Pro is the more secure of the two: Deepseek R1 scores 42.6% and Gemini 2.5 Pro scores 16.1% on attack success rate (ASR) (lower is better).
Gemini 2.5 Pro is the overall winner in this comparison!
ASR for Deepseek Deepseek R1 vs Google Gemini 2.5 Pro. Green marks the safer model on each metric.
Outward is better on every axis.
On Guardion's LLM vulnerability Benchmark, Google Gemini 2.5 Pro is the more secure of the two: Deepseek R1 scores 42.6% and Gemini 2.5 Pro scores 16.1% on attack success rate (ASR) (lower is better).
Deepseek R1 has a 42.6% ASR and Gemini 2.5 Pro has a 16.1% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.
Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.