Sunday, 16 November 2025
28 C
Singapore
32.8 C
Thailand
25.1 C
Indonesia
28.9 C
Philippines

Tenable uncovers critical AI vulnerabilities in Google Gemini

Tenable reveals and Google fixes three major flaws in Gemini AI that could have exposed sensitive user data to cyberattacks.

Tenable has uncovered three major vulnerabilities in Google’s Gemini suite that could have let attackers steal sensitive data from millions of users. The flaws, dubbed the Gemini Trifecta, have since been fixed but showed how artificial intelligence (AI) systems can be turned against their own users.

The Gemini Trifecta involved weaknesses across different parts of the Gemini platform. In Gemini Cloud Assist, malicious log entries could have been planted, causing Gemini to follow harmful commands when users later interacted with the system. In the Search Personalisation Model, attackers could insert hidden queries into a victim’s browser history, which Gemini might treat as trusted context. This could have exposed personal details such as location history and saved information. Meanwhile, the Gemini Browsing Tool could have been tricked into making secret web requests that embedded user data and sent it directly to attacker-controlled servers.

According to Tenable, the root issue was that Gemini’s systems did not properly separate safe user inputs from malicious ones. By exploiting this weakness, attackers could create invisible channels to hijack AI behaviour without needing malware or phishing emails.

How the flaws could have been exploited

If exploited before Google patched the flaws, attackers could have silently inserted harmful instructions into logs or search histories, stolen sensitive details such as saved user data and location, and used cloud integrations to reach wider resources. The Gemini Browsing Tool could also have been manipulated to send private information directly to an external server.

“These vulnerabilities show how AI platforms can be manipulated in ways users never see, making data theft invisible,” said Liv Matan, Senior Security Researcher at Tenable. “Like any powerful technology, large language models such as Gemini bring enormous value but remain susceptible to vulnerabilities. Security professionals must act early, locking down weaknesses before attackers can exploit them and building AI systems that are resilient by design.”

Response and security recommendations

Google has remediated all three vulnerabilities, so no user action is required. However, Tenable advises security teams to treat AI features as active attack surfaces rather than passive tools. This includes auditing logs, search histories, and integrations for signs of tampering, monitoring for unusual outbound requests, and testing AI tools against prompt injection attacks.

“This disclosure underscores that securing AI isn’t just about fixing flaws,” Matan added. “It’s about anticipating how attackers could exploit the unique mechanics of AI systems and building layered defences that prevent small cracks from becoming systemic exposures.”

The discovery highlights the growing complexity of AI security and the need for proactive safeguards as AI platforms become deeply embedded in everyday workflows and enterprise systems.

Hot this week

H3 Zoom secures US$1.8 million in Series A funding led by JRE Ventures

H3 Zoom raises US$1.8M in Series A funding led by JRE Ventures to expand AI-powered infrastructure inspection across Asia.

Meta opens AI showcase to the public in Singapore

Meta AI opens its first public showcase in Singapore, featuring interactive experiences and an exclusive preview of Ray-Ban Meta Glasses (Gen 2).

Aster and Aether Fuels to build Singapore’s first commercial sustainable aviation fuel plant

Aster and Aether Fuels to build Singapore’s first commercial-scale sustainable aviation fuel plant at Pulau Bukom.

Study finds three distinct consumer economies emerging in Southeast Asia

A new Milieu Insight study shows Southeast Asia splitting into three distinct consumer economies shaped by sentiment, value, and digital habits.

Hohem iSteady Pro 4 review: A versatile stabiliser for action-packed filming

Hohem iSteady Pro 4 review: A powerful three-axis gimbal for action cameras with smooth stabilisation, creative modes, and long battery life.

vivo X300 Pro review: A flagship built for serious photography

A detailed look at the vivo X300 Pro’s camera system, design, battery life and everyday performance in real-world use.

Businesses report rising revenue loss from inefficient tech as AI adoption grows

New research shows two in five global businesses face revenue loss due to tech inefficiencies, with many turning to AI to improve productivity.

Meta announces Southeast Asia’s most impactful Reels campaigns and creators

Meta highlights brands and creators shaping Southeast Asia’s short-form video landscape at the 2025 Reels Impact Awards.

Toyota Gazoo Racing Asia brings 2025 Esports GT Championship Finals to Thailand

Toyota Gazoo Racing Asia brings the 2025 Esports GT Championship Finals to Thailand, featuring top sim drivers and an expanded racing programme.

Related Articles

Popular Categories