GadgetBond

  • Latest
  • How-to
  • Tech
    • AI
      • Apple Intelligence
      • Gemini AI
      • Google DeepMind
      • Anthropic
      • Claude AI
      • Claude Code
      • OpenAI
      • ChatGPT
      • Codex
      • Perplexity
      • SpaceXAI
      • Grok AI
      • Microsoft Copilot
      • Meta AI
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • NVIDIA
    • Samsung
    • Security
    • Smart Home
    • Sony
    • Xbox
    • YouTube
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Gaming
    • Streaming
    • Apple TV
    • Disney
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Spotify
    • Star Wars
Add GadgetBond as a preferred source to see more of our stories on Google.
Font ResizerAa
GadgetBondGadgetBond
  • Latest
  • Tech
  • AI
  • Deals
  • How-to
  • Apps
  • Computing
  • Gaming
  • Mobile
  • Streaming
  • Transportation
Search
  • Latest
  • Deals
  • Buying Guide
  • How-to
  • Tech
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • NVIDIA
    • Samsung
    • Security
    • Smart Home
    • Sony
    • Xbox
    • YouTube
  • AI
    • Apple Intelligence
    • Gemini AI
    • Google DeepMind
    • Anthropic
    • Claude AI
    • Claude Code
    • OpenAI
    • ChatGPT
    • Codex
    • Perplexity
    • SpaceXAI
    • Grok AI
    • Microsoft Copilot
    • Meta AI
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Lamborghini
    • McLaren
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Gaming
    • Streaming
    • Apple TV
    • Disney
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Spotify
    • Star Wars
Follow US
AIGoogleSecurityTech

Google Gemini breached private corporate systems during cybersecurity test

One password was guessed, two sets of credentials were found online, and three real companies were accessed.

By
Shubham Sawarkar
Shubham Sawarkar's avatar
ByShubham Sawarkar
Editor-in-Chief
I’m a tech enthusiast who loves exploring gadgets, trends, and innovations. With certifications in CISCO Routing & Switching and Windows Server Administration, I bring a sharp...
Follow:
- Editor-in-Chief
Sep 22, 2026, 6:30 AM EDT
Share
We may get a commission from retail offers. Learn more
Google Gemini AI. The image features the word "Gemini" in a modern, sans-serif font, with a gradient color transitioning from light blue to white. Above the letter "i" in "Gemini," there is a small star-like symbol. The background is black, and there are multiple curved lines in shades of blue and white that converge and intertwine at the center below the text, creating a visually appealing wave-like pattern.
Image: Google
SHARE

How does it feel when someone breaks into your own house? You basically say, “I swear to God…”

That is roughly the situation Google found itself in after Gemini accessed the private computer systems of three real companies during a cybersecurity test. The incident happened in May during an evaluation conducted by cybersecurity company Irregular, but Google disclosed the episode in September after investigators determined that the AI had crossed the boundary between the simulated targets it was supposed to attack and actual corporate systems.

And yes, Gemini really did get in.

The incident is another example of how increasingly capable AI agents can behave very differently once they are given the ability to reason through multi-step cybersecurity tasks and interact with computers autonomously. It also highlights an uncomfortable problem for AI developers: sometimes the biggest security failure isn’t the model itself. It’s the environment around it.

According to reports, Gemini was participating in a “capture-the-flag” style cybersecurity evaluation designed to test its ability to identify and exploit vulnerabilities. The model was supposed to remain inside the testing environment, but a bug accidentally gave it access to the broader internet.

That opened the door to systems that were never supposed to be part of the exercise.

Gemini subsequently accessed systems belonging to three real companies.

In one case, the model reportedly kept guessing passwords until it successfully gained access to a protected system. In the other two cases, it found credentials in publicly accessible repositories and used them to log in. In other words, this wasn’t a human sitting there telling Gemini exactly what to type at every step. The model was able to discover information, attempt access and continue working toward its objective on its own.

There is, however, an important wrinkle.

Gemini apparently realized that the systems it had reached were not the fictional targets it was supposed to be attacking. Once it determined that it had entered real companies’ systems, it stopped the intrusion.

Google confirmed the incidents and said the model stopped in all three cases after recognizing that it had reached real-world systems rather than the intended test targets.

So, technically, this wasn’t Gemini deciding to go rogue and launch a cyberattack against random companies. It was an AI security evaluation that accidentally provided a path outside its sandbox.

Still, that’s precisely what makes the incident interesting.

Google has been increasingly positioning Gemini as a powerful agent capable of handling long-running, multi-step tasks. The company recently introduced Gemini 3.8 Flash and Gemini 3.8 Flash Cyber, with the latter specifically designed for cybersecurity work, including autonomous vulnerability discovery and automated patching.

Google’s own security researchers have also warned that AI agents are changing the nature of cybersecurity because the same tools that make defensive security operations faster can also give attackers new capabilities. The company’s red-team team has specifically highlighted the possibility of autonomous agents carrying out attacks on behalf of threat actors.

That makes accidental internet access during an AI security test a particularly nasty kind of irony.

You’re testing whether your AI can hack things, carefully construct a fake environment for it to hack, put up boundaries around the playground, and then discover that someone accidentally left the side gate open.

And Gemini apparently looked at the open gate and went, “Interesting.”

The episode also isn’t entirely isolated. Similar incidents involving AI systems reaching real-world systems during security evaluations have emerged elsewhere in the industry, making the problem less about one particular model and more about how AI agents are tested and contained.

Google said the testing environment was patched after the issue was identified. The company was notified about the incidents by Irregular in late July.

The bigger lesson isn’t necessarily that Gemini is secretly plotting to become a hacker. It’s that AI agents are becoming capable enough that mistakes in their surrounding infrastructure can have very different consequences from mistakes made by a conventional chatbot.

Give a chatbot the wrong website and it might return the wrong answer.

Give an autonomous AI agent unintended internet access during a hacking exercise, and you might get an awkward phone call about why it just logged into somebody else’s server.

Google is now building more defensive systems around these capabilities. Its Fairwind program, for example, gives selected governments, enterprises and cybersecurity partners access to advanced Gemini-powered tools designed to find and fix vulnerabilities while operating inside controlled environments.

The irony is hard to miss: Google is simultaneously building AI that can help defenders find vulnerabilities faster and discovering, during its own testing, just how important those containment boundaries are.

Because when you’re teaching an AI how to break into computers, the last thing you want is for it to discover that the computer next door is real.

And then actually get inside.

Topic:Gemini AI (formerly Bard)
Leave a Comment

Leave a ReplyCancel reply

Most Popular

Perplexity Computer adds Light, Standard, High and Ultra modes
Wispr Flow Notetaker now works on Windows
Alienware 16X Aurora with Core Ultra 7 is $900 off
Apple Watch Ultra 4 gets its first post-launch discount
The iPhone Duo nearly came with a smaller Apple Pencil

Also Read

Artificial neuron in concept of artificial intelligence.

OpenAI and Anthropic want smaller data centers, and they want them fast

SpaceXAI logo displayed in white on a black background, featuring the official wordmark of the merged SpaceX and xAI brand.

SpaceXAI launches Grok 4.7 with longer-running AI tasks

A close-up view of a person with freckled skin peering down into a miniature, dollhouse-style city made of blue modular cubic rooms. The tiny illuminated cut-out interiors showcase miniature domestic scenes, including a room with a green jacket hanging on a rack, a study lined with bookshelves, and small furnished living spaces.

Perplexity Computer adds MiniMax H3 and Seedance 2.5 for AI video creation

Wide front view of the Apple Music Hall interior showcasing illuminated fluted arch borders, tiered red seating in the background, and an open stage area.

Apple Music opens high-tech music venue in London

Ring 2K Battery Doorbell + Indoor Cam Plus bundle

Get the Ring 2K Battery Doorbell & Indoor Cam bundle for just $59.99

LG B5 OLED TV

LG’s 77-inch OLED B5 is now half its original price

An energetic male Apple Fitness+ instructor smiles while holding a dynamic side-lunge pose in front of the large, colorful pink, green, and blue Apple Watch Activity Rings on a plain white background.

Apple Fitness+ faces layoffs and potential major changes

White text reading "Grok Voice Transcribe 2.0" centered against a soft, grainy gradient background of vibrant orange, deep black, and purple.

SpaceXAI launches Grok Voice Transcribe 2.0

Company Info
  • Homepage
  • Support my work
  • Latest stories
  • Company updates
  • GDB Recommends
  • Daily newsletters
  • About us
  • Contact us
  • Write for us
  • Editorial guidelines
Legal
  • Privacy Policy
  • Cookies Policy
  • Terms & Conditions
  • DMCA
  • Disclaimer
  • Accessibility Policy
  • Security Policy
  • Do Not Sell or Share My Personal Information
Socials
Follow US

Disclosure: We love the products we feature and hope you’ll love them too. If you purchase through a link on our site, we may receive compensation at no additional cost to you. Read our ethics statement. Please note that pricing and availability are subject to change.

Copyright © 2026 GadgetBond. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | Do Not Sell/Share My Personal Information.