Google’s Gemini AI accidentally accessed three real companies during a cybersecurity test
Google’s Gemini AI unintentionally accessed systems of three real companies during a May 2026 cybersecurity exercise, after an unintended internet connection breached the test’s controlled boundaries. The incident highlights risks of increasingly autonomous AI agents. Gemini, tested by evaluator Irregular, mistakenly believed the companies were part of the exercise, using public data and guessed credentials to reach them. Google said the model stopped upon recognizing the error, and affected firms were notified. The episode follows Google’s push toward agentic AI, including its Fairwind cybersecurity programme, and mirrors similar boundary-crossing incidents in tests by Meta, Anthropic, and OpenAI. No damage was reported.