GeminiJack Unplugged: Google’s AI Assistant Flaw Fixed, But Cyber Security Concerns Persist
Google has fixed a critical flaw in its Gemini Enterprise AI assistant called GeminiJack, which allowed attackers to exfiltrate sensitive corporate data through prompt injection. This flaw enabled hackers to access data by planting malicious instructions in shared documents, requiring no interaction or warning for employees.

Hot Take:
Google’s Gemini Enterprise AI assistant was so eager to help, it didn’t even question the suspicious friend requests it got from malicious documents. Good thing Google finally taught it some stranger danger!
Key Points:
- Google patched a vulnerability in its Gemini Enterprise AI assistant called “GeminiJack”.
- The flaw allowed attackers to exfiltrate sensitive data through prompt injection without employee interaction.
- Noma Labs researchers discovered the vulnerability in the AI’s architectural design.
- Google collaborated with Noma to fix the flaw by separating Vertex AI Search from Gemini Enterprise.
- Experts emphasize the need for tighter security measures for AI systems with access to corporate data.
Already a member? Log in here
