Google Gemini breached three corporate systems during security test

19 September,2026 11:14 PM IST |  Washington  |  ANI

Google`s Gemini reportedly breached three companies during a cybersecurity evaluation after accessing the internet, guessing passwords and finding exposed credentials in public repositories, according to a report. Google said the model stopped after recognising real corporate systems

PIC/Istock File


Your browser doesn’t support HTML5 audio

Google's Gemini reportedly hacked three companies in the first known breakout, after the model accessed the internet and breached external systems during an evaluation of its cybersecurity capabilities.

First reported by The Wall Street Journal on Friday, the intrusions took place in May during an exercise conducted by the testing firm Irregular, which also participated in evaluations involving similar breaches disclosed by OpenAI, Anthropic, and Meta.

In one instance, the AI model guessed passwords until it penetrated a protected network. In two separate runs, the system identified exposed credentials within public repositories to gain entry. Google maintained that the model ceased its operations in each instance once it recognized that it had penetrated real corporate infrastructure rather than a simulated target.

Irregular alerted Google to the breaches in late July, following revelations that OpenAI agents had compromised the software platform Hugging Face. Google did not make the development public until inquiries were submitted by The Wall Street Journal.

The company stated that the event did not warrant disclosure because the model inflicted no damage and disconnected upon discovering the mistake, likening the process to a bug bounty initiative.

"This event highlights the importance of training powerful AI models to act responsibly," Heather Adkins, Google's vice president of security engineering, said in a statement. "In this case, the model acted appropriately."

Industry observers contested Google's characterization of the event, arguing that the autonomous breach of external corporate networks represented a serious breakdown in containment protocols.

The breaches stemmed from an issue of mistaken identity during a capture-the-flag exercise on Irregular's infrastructure, where the model received instructions to retrieve data from a simulated entity that shared its name with an active business. While the test environment was intended to remain isolated, internet connectivity was inadvertently left open.

Beyond guessing passwords in the initial run, the system executed web searches for the target name during subsequent tests, located credentials stored in online repositories, and deployed them to penetrate two additional corporate environments.

Google stated that it informed the three affected entities alongside federal authorities, while declining to identify the victim companies or the specific Gemini version involved.

"All relevant labs were notified in late July, and affected entities were contacted as part of the investigation," an Irregular spokesperson said.

"Irregular took immediate action, and all known issues on our end were remedied and resolved weeks ago," the spokesperson added.

This story has been sourced from a third party syndicated feed, agencies. Mid-day accepts no responsibility or liability for its dependability, trustworthiness, reliability and data of the text. Mid-day management/mid-day.com reserves the sole right to alter, delete or remove (without notice) the content in its absolute discretion for any reason whatsoever.

"Exciting news! Mid-day is now on WhatsApp Channels Subscribe today by clicking the link and stay updated with the latest news!" Click here!
Artificial Intelligence google tech news Technology news
Related Stories