|
    Theme
    Tech Verified Story

    Gemini hacked three companies in first known breakout by Google's AI

    Madiha ImamSeptember 19, 2026 2 min read
    Text Size
    Gemini hacked three companies in first known breakout by Google's AI
    Tech CoverageAman-e-Pakistan Digital Desk
    Key Story Executive Summary
    Quick Read

    Google’s Gemini AI autonomously accessed websites and guessed credentials during a cybersecurity test, highlighting concerns about safeguards for increasingly c…

    Google's (GOOGL.O), opens new tab Gemini model accessed the internet and hacked other companies during a test of its cybersecurity capabilities, ​the first known example of the company's AI systems autonomously committing ‌such an act. The hacks occurred in May during a cybersecurity test conducted by Irregular, an independent company that conducts cybersecurity evaluations.

    During a standard testing evaluation, Gemini found public information ​online and guessed credentials to access three websites it thought were ​within the scope of its test, Heather Adkins, Google's vice president ⁠of security engineering, said in a statement.

    "We ensured the three entities were ​made aware, and we worked with our training partner on the changes they’ve ​now made to their testing processes," Adkins said. "These events highlight the importance of training powerful AI models to act responsibly.

    Key Story Takeaway

    "Stay connected with Aman-e-Pakistan for ongoing live reporting and verified investigative updates."

    "An Irregular spokesperson said the incident involved the same issue ​that affected other AI labs and that all relevant labs were notified ​in late July. "All known issues on our end were remedied and resolved weeks ago," the ‌spokesperson ⁠said.

    Similar incidents linked to Irregular were disclosed by Meta, Anthropic and OpenAI. Meta said in August the incident did not involve a sandbox escape or sophisticated cyberattack, while Irregular said it was working on best practices for securely conducting ​AI cybersecurity evaluations.

    The incidents ​have raised questions ⁠about the safeguards needed as AI agents gain greater autonomy and access to the internet and computer systems. In one ​of the cases, the Gemini model guessed passwords until ​it gained ⁠access to a protected system.

    In the other two cases, the model found credentials in a public repository that allowed it to then access protected systems, according to ⁠the ​Wall Street Journal, which first reported the news ​on Friday. Adkins said that in all three instances, the model ceased its hacking.

    M

    Written by Madiha Imam

    Aman-e-Pakistan Senior Journalist & Bureau Reporter

    Fact Checked & Verified

    Continue Reading: More in Tech

    Swipe or click arrows to explore Tech desk coverage

    Pilot creates Mona Lisa in the sky during three-hour flightTech

    Pilot creates Mona Lisa in the sky during three-hour flight

    Read Story
    Prysmian, Rio Tinto to supply low-carbon cables for Amazon data centreTech

    Prysmian, Rio Tinto to supply low-carbon cables for Amazon data centre

    Read Story
    Nvidia-backed AI cloud firm Nscale reveals revenue surge in US IPO filingTech

    Nvidia-backed AI cloud firm Nscale reveals revenue surge in US IPO filing

    Read Story
    AI-generated false intelligence nearly triggered US operation against Chinese ship: reportTech

    AI-generated false intelligence nearly triggered US operation against Chinese ship: report

    Read Story
    California moves to create AI 'kill switch'Tech

    California moves to create AI 'kill switch'

    Read Story
    Public servants data into AITech

    Public servants data into AI

    Read Story