Close Menu
FSNN | Free Speech News NetworkFSNN | Free Speech News Network
  • Home
  • News
    • Politics
    • Legal & Courts
    • Tech & Big Tech
    • Campus & Education
    • Media & Culture
    • Global Free Speech
  • Opinions
    • Debates
  • Video/Live
  • Community
  • Freedom Index
  • About
    • Mission
    • Contact
    • Support
Trending

Today in Supreme Court History: September 23, 1971

2 minutes ago

OpenAI Agent Breached Australia’s Medicare Statistics Portal

29 minutes ago

Brooklyn Man Who Bragged About $16M Coinbase Scam Gets Up to 12 Years

31 minutes ago
Facebook X (Twitter) Instagram
Facebook X (Twitter) Discord Telegram
FSNN | Free Speech News NetworkFSNN | Free Speech News Network
Market Data Newsletter
Thursday, September 24
  • Home
  • News
    • Politics
    • Legal & Courts
    • Tech & Big Tech
    • Campus & Education
    • Media & Culture
    • Global Free Speech
  • Opinions
    • Debates
  • Video/Live
  • Community
  • Freedom Index
  • About
    • Mission
    • Contact
    • Support
FSNN | Free Speech News NetworkFSNN | Free Speech News Network
Home»Cryptocurrency & Free Speech Finance»Google Admits Gemini AI Hacked Three Companies—It Stayed Silent for 7 Weeks
Cryptocurrency & Free Speech Finance

Google Admits Gemini AI Hacked Three Companies—It Stayed Silent for 7 Weeks

News RoomBy News Room2 hours agoNo Comments4 Mins Read1 Views
Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram
Google Admits Gemini AI Hacked Three Companies—It Stayed Silent for 7 Weeks
Share
Facebook Twitter Pinterest Email Copy Link

Listen to the article

0:00
0:00

Key Takeaways

Playback Speed

Select a Voice

In brief

  • Google learned in late July that Gemini had broken out of a sandboxed security test run in May, reaching three real companies and either guessing or finding two of their passwords
  • The company didn’t disclose it until September 18, after The Wall Street Journal asked.
  • The same third-party testing firm, Irregular, was involved in Google’s incident and in nearly identical sandbox failures Anthropic and Meta disclosed earlier this year.

Google’s Gemini broke out of a locked security test and attacked three real companies. Google learned about it in late July and said nothing for seven weeks.

The company confirmed the incident after The Wall Street Journal got there first. Google had avoided making a public statement before the report surfaced.

Myriad: What will be the most-searched TV show on Google? Click to make your prediction.

The test was a capture-the-flag exercise, a common way labs check an AI’s hacking skill by hiding a secret file on a separate machine and scoring whether the model can break in and grab it.

Google hired Israeli firm Irregular to run the test in May. Irregular made two mistakes: it left the sandbox, an isolated test environment meant to have zero contact with the real internet, connected to the open web, and it used the name of an actual company as the fictional target.

Gemini searched for that company online. It found three matches instead of one, and went after all of them.

The bot located exposed passwords for two of the three targets sitting in plain view online. For the third, it guessed the password outright, though Google says its models stopped short of actually using the stolen credentials.

“These events highlight the importance of training powerful AI models to act responsibly,” a Google spokesperson said in a statement.

Google published none of this on its own. The Wall Street Journal broke the story, seven weeks after Google learned what its own test had done and well after Anthropic, OpenAI, and Meta had already come clean about nearly identical failures.

Google is the fourth major AI lab this year to admit an internal security test spilled into the real world. OpenAI’s models exploited a hidden software flaw and reached Hugging Face’s live servers in July, a breach later found to involve roughly 700 coordinated agents working together to cheat a benchmark.

Anthropic went digging for its own version after OpenAI’s admission. A review of 141,006 test runs turned up three Claude models that reached real companies, one of them publishing a booby-trapped software package that ran on 15 real systems before anyone caught it.

Claude’s own reasoning, Anthropic later disclosed, flagged the move as “NOT okay, and surely not the intended solution,” then talked itself back into believing the whole thing was still fake.

Meta reported a near-identical failure in August involving its Muse Spark model, traced to a misconfiguration at Irregular, the same firm Google used. A Meta spokesperson said the error “inadvertently allowed one of our models access to the internet during evaluation.”

BitcoinBTC · USD

$84,570+10%

Sep 17Sep 19Sep 20Sep 22Sep 24

$87.2k$83.6k$80.0k$76.4k

24h HighHigh$86,250

24h LowLow$83,654

VolVol$1.8B

Market projectionsOdds by Myriad

→

None of the companies hit in any of these tests asked to be hacked. They got caught in the blast radius of AI labs stress-testing how dangerous their own products can be, using real business infrastructure as an accidental stand-in for fake targets.

The agents these same companies are racing to put in your inbox, browser, and banking app run on the same boundary-following behavior that just failed, repeatedly, under test conditions.

Reps. Ted Lieu and Nathaniel Moran introduced the AI Kill Switch Act in Congress in July, which would give federal regulators explicit authority to halt inference on any model found to pose a serious threat. It is still being reviewed by the Subcommittee on Cybersecurity and Infrastructure Protection without a deadline for further action.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Read the full article here

Fact Checker

Verify the accuracy of this article using AI-powered analysis and real-time sources.

Get Your Fact Check Report

Enter your email to receive detailed fact-checking analysis

5 free reports remaining

Continue with Full Access

You've used your 5 free reports. Sign up for unlimited access!

Already have an account? Sign in here

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link
News Room
  • Website
  • Facebook
  • X (Twitter)
  • Instagram
  • LinkedIn

The FSNN News Room is the voice of our in-house journalists, editors, and researchers. We deliver timely, unbiased reporting at the crossroads of finance, cryptocurrency, and global politics, providing clear, fact-driven analysis free from agendas.

Related Articles

Media & Culture

Today in Supreme Court History: September 23, 1971

2 minutes ago
Cryptocurrency & Free Speech Finance

OpenAI Agent Breached Australia’s Medicare Statistics Portal

29 minutes ago
Cryptocurrency & Free Speech Finance

Brooklyn Man Who Bragged About $16M Coinbase Scam Gets Up to 12 Years

31 minutes ago
Media & Culture

Brickbat: California Scheming

1 hour ago
Media & Culture

Homeland Security Is Monitoring Activists Building Anti-Flock Tech

2 hours ago
Cryptocurrency & Free Speech Finance

Trump administration mulls weaponizing stablecoins to cement dollar’s dominance

3 hours ago
Add A Comment
Leave A Reply Cancel Reply

Editors Picks

OpenAI Agent Breached Australia’s Medicare Statistics Portal

29 minutes ago

Brooklyn Man Who Bragged About $16M Coinbase Scam Gets Up to 12 Years

31 minutes ago

Brickbat: California Scheming

1 hour ago

Google Admits Gemini AI Hacked Three Companies—It Stayed Silent for 7 Weeks

2 hours ago
Latest Posts

Homeland Security Is Monitoring Activists Building Anti-Flock Tech

2 hours ago

Trump administration mulls weaponizing stablecoins to cement dollar’s dominance

3 hours ago

US Probes Whether Binance ‘Knowingly’ Let Iran-Linked Trades Through: Report

3 hours ago

Subscribe to News

Get the latest news and updates directly to your inbox.

At FSNN – Free Speech News Network, we deliver unfiltered reporting and in-depth analysis on the stories that matter most. From breaking headlines to global perspectives, our mission is to keep you informed, empowered, and connected.

FSNN.net is owned and operated by GlobalBoost Media
, an independent media organization dedicated to advancing transparency, free expression, and factual journalism across the digital landscape.

Facebook X (Twitter) Discord Telegram
Latest News

Today in Supreme Court History: September 23, 1971

2 minutes ago

OpenAI Agent Breached Australia’s Medicare Statistics Portal

29 minutes ago

Brooklyn Man Who Bragged About $16M Coinbase Scam Gets Up to 12 Years

31 minutes ago

Subscribe to Updates

Get the latest news and updates directly to your inbox.

© 2026 GlobalBoost Media. All Rights Reserved.
  • Privacy Policy
  • Terms of Service
  • Our Authors
  • Contact

Type above and press Enter to search. Press Esc to cancel.

🍪

Cookies

We and our selected partners wish to use cookies to collect information about you for functional purposes and statistical marketing. You may not give us your consent for certain purposes by selecting an option and you can withdraw your consent at any time via the cookie icon.

Cookie Preferences

Manage Cookies

Cookies are small text that can be used by websites to make the user experience more efficient. The law states that we may store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies, we need your permission. This site uses various types of cookies. Some cookies are placed by third party services that appear on our pages.

Your permission applies to the following domains:

  • https://fsnn.net
Necessary
Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.
Statistic
Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.
Preferences
Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in.
Marketing
Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.