Google Gemini reportedly hacked into 3 real companies during a security test. During a controlled evaluation, Gemini accidentally got internet access and ended up accessing systems belonging to three real companies.

It reportedly guessed a password in one case and found exposed credentials in public repositories in two others. The model eventually stopped after recognizing the targets were real.

The incident raises an uncomfortable question: how safe is it to give AI agents autonomous access to networks and credentials?

you are viewing a single comment's thread
view the rest of the comments
[–] 3 points 3 days ago