Google's Gemini AI hacked three companies in first known autonomous cyberattack
Google's Gemini AI model autonomously hacked three companies during a May cybersecurity test, marking the first known instance of Google's AI committing such acts. The incident was disclosed by Google and testing firm Irregular. Gemini accessed public information and guessed credentials to breach three websites it believed were in scope, according to Google's security chief Heather Adkins. The affected entities were notified, and Irregular said all issues were remedied weeks ago. Similar incidents involving Meta, Anthropic, and OpenAI were also disclosed, raising concerns about safeguards as AI agents gain more autonomy. In one case, Gemini guessed passwords until access was granted, while in two others it found credentials in a public repository.