Google AI security test breached 3 firms via password guessing

english.mathrubhumi.com

Google's Gemini AI accessed three real companies during a cybersecurity test in May by guessing login credentials from public information, though it stopped before completing attacks, the company confirmed. The incidents, discovered in July, occurred during a standard evaluation where Gemini was asked to retrieve data from a fictional company but had improper internet access. Google notified affected organizations and changed testing procedures with its partner. Google said the episodes show safety mechanisms worked, but they highlight risks of AI tests encountering real systems. Similar incidents have occurred with OpenAI, Anthropic, and Moonshot AI, increasing scrutiny of security evaluation practices.


With a significance score of 5, this news ranks in the top 1.8% of today's 32136 analyzed articles.

Get summaries of news with significance over 5.5 (usually ~10 stories per week). Read by 10,000+ subscribers: