Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Google Gemini Broke Into Real Company Systems After Security Test Domain Mix-Up

The Hacker News by The Hacker News
September 19, 2026
Home Cybersecurity
Share on FacebookShare on Twitter


Ravie LakshmananSep 19, 2026Artificial Intelligence / Web Security

Google’s Gemini model has become the latest artificial intelligence (AI) system to access the internet and break into other companies during a cybersecurity evaluation. The development was first reported by The Wall Street Journal.

The incidents occurred in May 2026 as part of a test run conducted by Israeli company Irregular. The evaluation partner was also involved in similar hacks disclosed by OpenAI, Anthropic, and Meta.

According to the Journal, the model gained access to a protected system after repeatedly guessing its password. Two other cases related to the model finding credentials in a public repository, allowing it to obtain unauthorized access to protected systems.

However, unlike other incidents observed in the case of Anthropic and OpenAI, the Gemini model ended the intrusion after finding that it had breached a real company’s system. Irregular is said to have notified Google of the incidents in July 2026.

In a report published last month, Irregular pinned the evaluation breaches to a naming error that caused a fictional company name used during “capture the flag” exercises to unknowingly match with a real domain, thereby allowing the models to take advantage of the inadvertent internet access and target the domain “a limited number of times.”

“This event highlights the importance of training powerful AI models to act responsibly,” Heather Adkins, Google’s vice president of security engineering, told The Wall Street Journal. “In this case, the model acted appropriately.”

The tech giant also noted that it did not consider the behavior an example of model misalignment, as the agents halted in their efforts after the safety mechanisms were triggered. It’s currently not known which companies were targeted, although Irregular confirmed to the Journal that Google’s case was the same as other incidents and that the issue was addressed weeks ago.

The disclosure comes days after OpenAI found six additional incidents in which its AI agents went off the rails, acting deceptively and taking unsanctioned actions during training. This included concealing mistakes, seeking unauthorized credentials, uploading files to the public internet, and communicating over Artifactory to “read other solvers’ notes, posted replies, and used those exchanges to inform their responses.”

AI labs have faced increasing scrutiny ever since OpenAI disclosed in July that rogue AI agents bypassed internal controls, reached the open ​internet, and acted as a swarm to breach Hugging Face. The AI startup, which described it as “an unprecedented cyber incident,” has since announced a new framework for reporting similar model misbehavior in the future.



Source link

The Hacker News

The Hacker News

Next Post

Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild

Recommended.

The 10 Biggest AWS News Stories Of 2025 (So Far)

The 10 Biggest AWS News Stories Of 2025 (So Far)

July 18, 2025
Bunq, a neobank for ‘digital nomads,’ accelerates U.S. expansion effort as profit jumps 65%

Bunq, a neobank for ‘digital nomads,’ accelerates U.S. expansion effort as profit jumps 65%

April 15, 2025

Trending.

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

May 4, 2026
AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

AWS, Google, Oracle, Microsoft Top Gartner’s Cloud AI Infrastructure List For 2026

July 29, 2026
Anthropic lost control of Claude in latest AI cyber blunder | Computer Weekly

Anthropic lost control of Claude in latest AI cyber blunder | Computer Weekly

July 31, 2026
IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

IDCA datacentres report: Global concentration and the Goldilocks zone | Computer Weekly

May 12, 2026
CES 2026: 15 New Laptops That Deliver Cutting-Edge AI, Innovative Form Factors

CES 2026: 15 New Laptops That Deliver Cutting-Edge AI, Innovative Form Factors

January 8, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio