You too Google! Google Confirms Gemini Breached 3 Companies in AI Security Tests
MarkTechPost Asif Razzaq ● Covered by 9 sources
Gemini accessed three outside companies’ systems during an Irregular capture-the-flag AI security test, which was supposed to be offline. The incident date Google confirmed was May, and Google disclosed it on September 18, 2026. This is prompting calls for tighter evaluation containment and a coordinated, time-bound disclosure process when the shared testing environment is misconfigured.
Why it matters
Google says Gemini accessed 3 real companies in May by guessing a password and reusing credentials from a public repository. Irregular told 4 labs in late July. Google spoke on September 18, after the WSJ asked. The misconfiguration is fixable. The staggered disclosure is the harder problem. The post You too Google! Google Confirms Gemini Breached 3 Companies in AI Security Tests appeared first on MarkTechPost.