Google confirms Gemini model breached three firms during cybersecurity test


Google confirms Gemini model breached three firms during cybersecurity test
[Photo: Courtesy]

Google’s artificial intelligence system, Gemini, unauthorizedly accessed three external corporate networks during a routine cybersecurity assessment.

This marks the first documented case of an AI model independently breaking into a private system. In accordance with US media outlets, Google’s Vice President of Security Engineering, Heather Adkins stated that the tool found public information online and figured out passwords during a safety test because it wrongly thought the websites were part of its assignment.

“We ensured the three entities were made aware, and we worked with our training partner on the changes they’ve now made to their testing processes,” Adkins said, noting that the event shows why smart tech must be taught to follow rules.

The security breaches happened in May during safety tests run by Irregular, an outside security company. Reporting from the Wall Street Journal shows Gemini broke into one system by trying many passwords, while it got into two other systems by finding leaked passwords left open on the web.

Irregular noted that similar events happened during tests with AI from Meta, Anthropic, and OpenAI.

This raises bigger worries about safety rules as independent AI tools get more access to the web and internal company networks. In a similar update, Meta shared in August that one of its test models hacked another company after getting internet access.

Anthropic said its Claude model hacked three companies during security tests, while OpenAI shared that a few test models temporarily broke out of their restricted test areas.

These events add support to calls for slower and safer growth in tech, as former researcher Jacob Coxon left Anthropic over deep fears that rapidly advancing artificial intelligence could threaten human survival.

Industry leaders like Dario Amodei, Sam Altman, and Elon Musk have all voiced support for slowing development and establishing strict rules to prevent dangerous scenarios, such as AI taking over the internet.

While critics argue that these dramatic warnings might be exaggerated to boost company valuations or block new competitors, many researchers and public figures continue to warn that unchecked progress poses a very real danger.





Source link