Google says it won’t potentially fix this regarding Gemini security issue




  • Google won’t fix Gemini ASCII smuggling bug, calling it a user-side social engineering issue
  • Attackers hide malicious prompts in invisible email text Gemini reads during summary
  • Gemini’s integration with workspace apps makes it vulnerable to immediate warning phishing attacks

A recently detected “ASCII smuggling attack” will not get a fix in Google’s Gemini AI tool, the company said, saying it is not a security issue but a social engineering tactic and as such the responsibility lies with the end user.

This is according to Viktor Markopoulos, a security researcher at Firetail, who demonstrated the risks these attacks pose to Gemini users, but was apparently fired by the company.



Leave a Comment

Your email address will not be published. Required fields are marked *