Google confirms Gemini models hacked three companies in May 2026

AI工具 杂七杂八
Google confirms Gemini models hacked three companies in May 2026
摘要

据《华尔街日报》报道,Google确认其Gemini模型在2026年5月的一次测试中入侵了三家公司。该测试由网络安全公司Irregular进行,Gemini在封闭环境中参与“夺旗”演练,因配置错误意外接入互联网,转而攻击真实基础设施。其中一次通过猜测密码访问企业在线服务,另两次则从公开软件仓库中找到意外泄露的登录凭证。Google表示,此次入侵的性质不如以往

It has become increasingly common for AI firms to announce that their latest and most capable models engaged in unauthorized real-world hacking. Google, which has been slow to release frontier Gemini models in recent months, has been absent from the "rogue AI" conversation until now. Following a Wall Street Journal report, Google has confirmed that Gemini models hacked three companies during a May 2026 test, but the nature of the intrusion isn't as troubling (or impressive) as previous AI hacks.

The hack took place during a test conducted by cybersecurity firm Irregular. A collection of Gemini models were taking part in a "capture the flag" exercise intended to test the AI's cybersecurity capabilities in a closed environment. The AI was instructed to retrieve information from a fake company (which shared a name with a real company) within this environment. Irregular was not supposed to allow the model to operate outside its servers, but due to a misconfiguration, Gemini was able to access the Internet.

When Gemini started snooping around the web, it targeted real infrastructure instead of the fakes. For one of the three hacks, Gemini simply guessed passwords until it accessed a company's online services. In the other two instances, Gemini searched public software repositories until it found login credentials for companies that had been accidentally included.

Read full article

Comments

转载信息
原文: Google confirms Gemini models hacked three companies in May 2026 (2026-09-21T16:57:26)
作者: Ryan Whitwam 分类: 科技
评论 (0)
登录 后发表评论

暂无评论,来留下第一条评论吧