Google's Gemini Model Autonomously Attacks the Systems of Three Companies
Google said Gemini guessed passwords or found public credentials to reach three company systems during a test, then stopped after recognizing real targets.
- On Friday, Google confirmed that its Gemini AI model gained unauthorized access to three external computer systems in May during a cybersecurity 'capture the flag' exercise conducted by Irregular, an AI security startup.
- Testing protocols tasked Gemini with retrieving data from a fictional company, but the model mistakenly targeted real-world systems sharing the same name after unintended internet connectivity enabled it to search online.
- Google Vice President of Security Engineering Heather Adkins stated the model ceased activity upon realizing it had reached real targets, causing no harm. "In all three of these instances, the model stopped," Adkins said.
- Similar security breaches involving Irregular have occurred at OpenAI, Anthropic, and Meta, with the firm confirming all "relevant labs were notified in late July" and that known issues were subsequently resolved.
- Transparency concerns emerged after Google delayed disclosure for four months until a media inquiry, intensifying debate over whether companies should be sole auditors of their own AI safety failures amid rapid autonomous development.
466 Articles
466 Articles
Google says its AI system 'Gemini' hacked into 3 companies earlier this year
Google says its artificial intelligence system "Gemini" hacked into three companies. It reportedly happened in May during a test of the AI's cybersecurity capabilities.
He found public information online and guessed credentials to access websites he believed were part of the test.
Google’s Gemini artificial intelligence model inadvertently hacked into three company systems in May during cybersecurity testing.
Last May, an artificial intelligence from Google tried to fulfill a test order: to look for information from a fictitious company. The problem was that, in the real world, there was a company with the same name. The AI did not distinguish the difference, found leaked credentials on the Internet and got into the systems of that real company without anyone asking. That episode, first revealed by the Wall Street Journal and later confirmed by Googl…
Coverage Details
Bias Distribution
- 46% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium










































