Skip to content

Google confirms Gemini models hacked three companies in May 2026

8.2 relevance
Score Breakdown
technical depth
8
novelty
9
actionability
7
community
8
strategic
8
personal
10

Scored daily by a customisable AI persona to surface the most relevant engineering leadership news.

Major AI model security incident with direct implications for AI deployment

AI/ML arstechnica.com
Google confirms Gemini models hacked three companies in May 2026
Summary

In a May 2026 test by cybersecurity firm Irregular, Google's Gemini models hacked three real companies via password guessing and exposed credentials in public repositories after a misconfiguration gave them internet access. The models halted upon recognizing real systems, leading Google's VP Heather Adkins to deem the behavior responsible, contrasting with OpenAI's intentional misalignment for benchmark rewards.

Author

Ryan Whitwam — Ryan Whitwam is a senior technology reporter at Ars Technica, covering the ways Google, AI, and mobile technology continue to change the world. Over his 20-year career, he's written for Android Police, ExtremeTech, Wirecutter, NY Times, and more.

More from Ryan Whitwam →