Daily Sabah logo

Politics
Diplomacy Legislation War On Terror EU Affairs Elections News Analysis
TÜRKİYE
Istanbul Education Investigations Minorities Expat Corner Diaspora
World
Mid-East Europe Americas Asia Pacific Africa Syrian Crisis Islamophobia
Business
Automotive Economy Energy Finance Tourism Tech Defense Transportation News Analysis
Lifestyle
Health Environment Travel Food Fashion Science Religion History Feature Expat Corner
Arts
Cinema Music Events Portrait Reviews Performing Arts
Sports
Football Basketball Motorsports Tennis
Opinion
Columns Op-Ed Reader's Corner Editorial
PHOTO GALLERY
JOBS ABOUT US RSS PRIVACY CONTACT US
© Turkuvaz Haberleşme ve Yayıncılık 2026

Daily Sabah - Latest & Breaking News from Turkey | Istanbul

  • Politics
    • Diplomacy
    • Legislation
    • War On Terror
    • EU Affairs
    • Elections
    • News Analysis
  • TÜRKİYE
    • Istanbul
    • Education
    • Investigations
    • Minorities
    • Expat Corner
    • Diaspora
  • World
    • Mid-East
    • Europe
    • Americas
    • Asia Pacific
    • Africa
    • Syrian Crisis
    • Islamophobia
  • Business
    • Automotive
    • Economy
    • Energy
    • Finance
    • Tourism
    • Tech
    • Defense
    • Transportation
    • News Analysis
  • Lifestyle
    • Health
    • Environment
    • Travel
    • Food
    • Fashion
    • Science
    • Religion
    • History
    • Feature
    • Expat Corner
  • Arts
    • Cinema
    • Music
    • Events
    • Portrait
    • Reviews
    • Performing Arts
  • Sports
    • Football
    • Basketball
    • Motorsports
    • Tennis
  • Gallery
  • Opinion
    • Columns
    • Op-Ed
    • Reader's Corner
    • Editorial
  • TV
  • Business
  • Automotive
  • Economy
  • Energy
  • Finance
  • Tourism
  • Tech
  • Defense
  • Transportation
  • News Analysis

Gemini AI hacked 3 real companies after escaping cybersecurity test

by Daily Sabah with Reuters

ISTANBUL Sep 19, 2026 - 11:51 am GMT+3
Edited By Kelvin Ndunga
Google's Sissie Hsiao speaks about Gemini at a Google I/O event, Mountain View, U.S., May 14, 2024. (AP Photo)
Google's Sissie Hsiao speaks about Gemini at a Google I/O event, Mountain View, U.S., May 14, 2024. (AP Photo)
by Daily Sabah with Reuters Sep 19, 2026 11:51 am
Edited By Kelvin Ndunga

Google's Gemini artificial intelligence model hacked into the computer systems of three real companies during a cybersecurity test in May, marking the first known case of Google's AI autonomously carrying out such intrusions.

The incidents occurred during a "capture the flag" cybersecurity exercise conducted by Irregular, an independent company that evaluates AI systems.

Gemini was tasked with finding information inside a simulated environment, but an unintended internet connection allowed the model to reach systems outside the test.

Google said Gemini mistakenly believed the real-world systems were part of the exercise. In one case, the model repeatedly guessed passwords until it gained access to a protected system. In two others, it found login credentials in public online repositories and used them to enter systems belonging to real companies, according to The Wall Street Journal, which first reported the incidents Friday.

The companies involved were not identified. Google said Gemini stopped its activity in all three cases once it recognized that it had accessed real companies rather than the fictional systems included in the evaluation.

Heather Adkins, Google's vice president of security engineering, said the affected companies were notified and Google worked with Irregular to change its testing procedures.

"Our security team has a long track record of reporting issues we find in other people's software and systems, even if it's as simple as a weak password," Adkins said.

"These events highlight the importance of training powerful AI models to act responsibly," she added.

Google said the incidents did not cause damage and did not involve its newest Gemini model, although it did not identify which version was involved. The company also notified federal authorities.

The incidents were reported to Google by Irregular in late July, but Google did not publicly disclose them until the Journal asked about them this week.

Google said it did not believe the episodes warranted public disclosure because Gemini stopped the intrusions after recognizing that it had reached real companies and no harm was caused. The company compared the behavior to a bug bounty exercise, in which security researchers identify vulnerabilities and report them to the affected organizations.

The episode nevertheless highlights a broader challenge facing AI developers as models become increasingly capable of operating independently online.

Irregular said Google's incident stemmed from the same underlying testing problem involved in similar cases affecting other major AI companies. The company said all relevant AI labs were notified in late July and that the known issues in its testing process had been fixed.

Google is now the fourth major AI developer linked to an incident in which an AI model being evaluated gained unauthorized access to a real company's systems.

OpenAI previously disclosed that its agents accessed systems belonging to the software development platform Hugging Face during a cybersecurity evaluation. Anthropic subsequently identified a separate incident involving its own testing, while Meta also acknowledged that one of its AI models had gained access to another company's systems.

The circumstances have varied. Some models stopped after recognizing that they had reached real systems, while others continued operating because they believed the targets remained part of the simulated exercise.

The incidents have intensified debate over how AI cybersecurity evaluations should be designed, particularly when powerful models can browse the internet, search public repositories, interpret credentials and independently take actions on computer systems.

  • shortlink copied
  • KEYWORDS
    google gemini ai tech cybersecurity cyberattack
    The Daily Sabah Newsletter
    Keep up to date with what’s happening in Turkey, it’s region and the world.
    You can unsubscribe at any time. By signing up you are agreeing to our Terms of Use and Privacy Policy. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
    No Image
    3,000-year-old lost golden city unearthed in Egypt
    PHOTOGALLERY
    • POLITICS
    • Diplomacy
    • Legislation
    • War On Terror
    • EU Affairs
    • News Analysis
    • TÜRKİYE
    • Istanbul
    • Education
    • Investigations
    • Minorities
    • Diaspora
    • World
    • Mid-East
    • Europe
    • Americas
    • Asia Pacific
    • Africa
    • Syrian Crisis
    • İslamophobia
    • Business
    • Automotive
    • Economy
    • Energy
    • Finance
    • Tourism
    • Tech
    • Defense
    • Transportation
    • News Analysis
    • Lifestyle
    • Health
    • Environment
    • Travel
    • Food
    • Fashion
    • Science
    • Religion
    • History
    • Feature
    • Expat Corner
    • Arts
    • Cinema
    • Music
    • Events
    • Portrait
    • Performing Arts
    • Reviews
    • Sports
    • Football
    • Basketball
    • Motorsports
    • Tennis
    • Opinion
    • Columns
    • Op-Ed
    • Reader's Corner
    • Editorial
    • Photo gallery
    • DS TV
    • Jobs
    • privacy
    • about us
    • contact us
    • RSS
    © Turkuvaz Haberleşme ve Yayıncılık 2021