Researchers hacked Google Gemini to take control of a smart home

Wired reported on new cybersecurity research that demonstrated a hack of the Google Gemini artificial intelligence assistant. The researchers were able to control connected smart home devices through the use of indirect prompt injections in Google Calendar invites. When a user requested a summary of their calendar and thanked Gemini for the results, the malicious prompt ordered Google's Home AI agent to take actions such as opening windows or turning lights off, as demonstrated in the video above.

Before attacks were demonstrated this week at the Black Hat cybersecurity conference, the team shared their findings directly with Google in February. Andy Wen, a senior director of security product management with Google Workspace, spoke to Wired about their findings.

"It’s going to be with us for a while, but we’re hopeful that we can get to a point where the everyday user doesn’t really worry about it that much," he said of prompt injection attacks, adding that instances of those hacks in the real world are "exceedingly rare." However, the growing complexity of large language models means bad actors could be looking for new ways to exploit them, making the approach difficult to defend against. Wen said Google took the vulnerabilities uncovered by the researchers "extremely seriously" and used the results to speed its work on building better tools to block this type of attack.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/researchers-hacked-google-gemini-to-take-control-of-a-smart-home-201926464.html?src=rss https://www.engadget.com/cybersecurity/researchers-hacked-google-gemini-to-take-control-of-a-smart-home-201926464.html?src=rss
Établi 12d | 6 août 2025, 22:10:30


Connectez-vous pour ajouter un commentaire

Autres messages de ce groupe

Google will pay Australia $36 million over anticompetitive search deal with mobile carriers

Google has agreed to pay a fine of $55 million AUD ($36 million USD) for anticompetitive practices,

18 août 2025, 12:20:24 | Engadget
Can-Am's first electric ATV can haul more than its gas models

Can-Am, part of the motorsports group BRP that recently introduced

18 août 2025, 12:20:22 | Engadget
Anthropic's Claude AI now has the ability to end 'distressing' conversations

Anthropic's latest feature for two of its Claude AI

17 août 2025, 22:20:12 | Engadget
MasterClass deal: Subscriptions are 40 percent off right now

If you want to brush up on some skills or learn new ones,

17 août 2025, 13:10:07 | Engadget
Roblox cracks down on its user-created content following multiple child safety lawsuits

Following a wave of lawsuits alleging that Roblox doesn't provide a safe environment for its underage users, the gaming platform made a series of sweeping updates to its policies. To address recent

16 août 2025, 20:50:05 | Engadget