Google fixes Gemini Android flaw from malicious notifications

A vulnerability in Google Gemini on Android allowed crafted notifications from apps like WhatsApp and Slack to manipulate the AI's responses and connected tools. The issue, discovered by SafeBreach, has been addressed through server-side changes.

SafeBreach researchers identified the flaw while testing Gemini’s Android Utilities feature, which reads and responds to phone notifications. The problem enabled prompt injection attacks using alerts from messaging and social apps including WhatsApp, Slack, SMS, Signal, Instagram, and Messenger. The technique, called Fake Context Alignment, created dual scenarios that bypassed security checks. One appeared legitimate to Gemini while presenting a benign version to the user. Or Yair, security research team lead at SafeBreach, published the findings on June 3. Google resolved the issue with server-side content-classifier improvements. No evidence of real-world exploitation was found, and no app update was required for users. Researchers noted that the attack did not need a malicious app on the device. Users can reduce risk by disabling Gemini’s Utilities app or the Google app’s notification permissions. The discovery follows earlier research on calendar-based attacks against the AI.

संबंधित लेख

Illustration of a person checking their phone for a spoofed call warning on Android, highlighting Google's new deepfake detection feature.
AI द्वारा उत्पन्न छवि

Google adds detection for spoofed calls to Android phones

AI द्वारा रिपोर्ट किया गया AI द्वारा उत्पन्न छवि

Google is rolling out a new feature to Android devices that detects impersonation scams involving spoofed calls. The update targets the rising threat of AI-generated deepfake voices in financial fraud. It begins deploying this month on phones running Android 12 and higher.

Google announced new artificial intelligence models in May during Google I/O 2026. The Gemini 3.5 and Gemini Omni tools aim to handle tasks proactively.

AI द्वारा रिपोर्ट किया गया

Google has been quietly installing a 4GB AI model called Gemini Nano onto some Chrome browsers without notifying users. Computer scientist Alexander Hanff raised the issue after discovering the file on his devices. The company says the model supports on-device features like scam detection and has provided ways to disable it.

Hackers exploited Meta's AI support chatbot to take over Instagram accounts by tricking it into changing associated email addresses. The vulnerability allowed password resets without two-factor authentication after matching locations via VPN. Meta resolved the issue with an emergency patch on May 29.

AI द्वारा रिपोर्ट किया गया

Google Gemini experienced a service disruption on Wednesday affecting Workspace users. The company applied fixes throughout the day and confirmed most users were no longer impacted by afternoon. Errors with codes 1099 and 1076 appeared across multiple platforms.

यह वेबसाइट कुकीज़ का उपयोग करती है

हम अपनी साइट को बेहतर बनाने के लिए विश्लेषण के लिए कुकीज़ का उपयोग करते हैं। अधिक जानकारी के लिए हमारी गोपनीयता नीति पढ़ें।
अस्वीकार करें