A lesson in separation of concerns: Google’s gemini hijacked

The news Google’s Gemini AI was hijacked via a hidden prompt in a calendar invite.

Hackers Hijacked Google’s Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home. For likely the first time ever, security researchers have shown how AI can be hacked to create real-world havoc, allowing them to turn off lights, open smart shutters, and more.

Rings bells to me about the lack of human data interaction especially the separations of concerns.

I already talked about this with Google’s AI wanting access to everything Google related. This hijack wouldn’t be so effective if there were better permissions and separations of concerns were built in rather than given lip service.

Google sent an email today with the title… Introducing temporary chats and new data controls. Still not addressing the underlying problems.

When will they learn???

It really makes me think about a few things.

Will Android fork off sooner or later? Will moat people care?

Author: Ianforrester

Senior firestarter at BBC R&D, emergent technology expert and serial social geek event organiser. Can be found at cubicgarden@mas.to, cubicgarden@twit.social and cubicgarden@blacktwitter.io

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

To respond on your own website, enter the URL of your response which should contain a link to this post's permalink URL. Your response will then appear (possibly after moderation) on this page. Want to update or remove your response? Update or delete your post and re-enter your post's URL again. (Find out more about Webmentions.)