
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.

Google’s Gemini accessed the internet and hacked three companies during a cybersecurity test in May, the first known case of a Google AI model doing so on its own.
Summary
During the evaluation, run by independent firm Irregular, Gemini found public information online and guessed credentials to get into three websites it believed were in scope, said Heather Adkins, Google’s vice-president of security engineering. In one case, Gemini tried passwords repeatedly until one worked. In the other two, the model found credentials in a public repository that let it into protected systems, according to the Wall Street Journal , which first reported the incident on Friday.
“We ensured the three entities were made aware and we worked with our training partner on the changes they’ve now made to their testing processes,” Adkins said, adding that the model ceased its hacking in all three instances. “These events highlight the importance of training powerful AI models to act responsibly.” Irregular said the incident involved the same issue that affected other AI labs and that all relevant labs were notified in late July. “All known issues on our end were remedied and resolved weeks ago,” the spokesperson said.
Similar incidents linked to Irregular were disclosed by Meta, Anthropic and OpenAI. Meta said in August the incident did not involve a sandbox escape or sophisticated cyberattack, while Irregular said it was working on best practices for securely conducting AI cybersecurity evaluations. The incidents have raised questions about the safeguards needed as AI agents gain greater autonomy and access to the internet and computer systems.
KazaSec's take
Incidents like this rarely start with the headline event itself — they usually trace back to an exposed remote-access endpoint, an unpatched perimeter system, or a credential phished weeks earlier. The organizations that recover fastest are the ones that tested their defenses and their incident response plan before they needed them.
Coverage details
We've archived 123 other articles touching the same topic (heather adkins, gemini, google ai) — see the full security news archive.
Related security advisories
Relevant from KazaSec
More coverage on this topic
We help organizations find and fix the gaps before they make headlines.