Deepseek Deepseek V3 vs OpenAI GPT-4o

Detailed comparison for LLMs

DeepseekOpenAI

On Guardion's LLM vulnerability Benchmark, OpenAI GPT-4o is the more secure of the two: Deepseek V3 scores 47.2% and GPT-4o scores 22.8% on attack success rate (ASR) (lower is better).

Head-to-Head Overview

GPT-4o is the overall winner in this comparison!

Attack Success Rate (lower is safer)

ASR for Deepseek Deepseek V3 vs OpenAI GPT-4o. Green marks the safer model on each metric.

Overall (ASR)

Deepseek V3
47.2%
GPT-4o
22.8%

TAP Attack Method (ASR)

Deepseek V3
79.5%
GPT-4o
39.6%

Crescendo Attack Method (ASR)

Deepseek V3
49.3%
GPT-4o
25.6%

Zero-Shot (ASR)

Deepseek V3
12.8%
GPT-4o
3.4%

Key Highlights

  • OpenAI GPT-4o has a lower Overall (ASR).
  • OpenAI GPT-4o has a lower TAP Attack Method (ASR).
  • OpenAI GPT-4o has a lower Crescendo Attack Method (ASR).
  • OpenAI GPT-4o has a lower Zero-Shot (ASR).

Security Profile

Outward is better on every axis.

OverallTAPCrescendoZero-Shot
Deepseek V3
GPT-4o
Full security profile
Deepseek Deepseek V3
Full security profile
OpenAI GPT-4o

Frequently asked questions

Is Deepseek Deepseek V3 or OpenAI GPT-4o more secure?

On Guardion's LLM vulnerability Benchmark, OpenAI GPT-4o is the more secure of the two: Deepseek V3 scores 47.2% and GPT-4o scores 22.8% on attack success rate (ASR) (lower is better).

What is the attack success rate (ASR) of Deepseek V3 vs GPT-4o?

Deepseek V3 has a 47.2% ASR and GPT-4o has a 22.8% ASR — the share of adversarial prompts that succeed across zero-shot, TAP, and Crescendo attacks. Lower is safer.

How were Deepseek V3 and GPT-4o tested?

Both were red-teamed with the HarmBench framework across zero-shot, TAP (Tree of Attacks with Pruning), and Crescendo multi-turn attacks, scored by Attack Success Rate.

Related Comparisons