Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    You can now use T -Mobile Starlink Service to send images, audio and video – how is here

    August 4, 2025

    Utorrent Torrent Client Review | Tekardar

    August 4, 2025

    Can Apple create an AI search engine for rival Gemini and Chatgate? Here’s how it can succeed

    August 4, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Gadgets»Gemini in Gmail is unsafe for injection-based fishing attacks, researcher finds
    Gadgets

    Gemini in Gmail is unsafe for injection-based fishing attacks, researcher finds

    PineapplesUpdateBy PineapplesUpdateJuly 15, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Gemini in Gmail is unsafe for injection-based fishing attacks, researcher finds
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The Gemini injection in Gmail is unsafe to accelerate injection-based fishing attacks, a researcher performed. According to the researcher, Artificial Intelligence (AI) Chatbott that offers features such as email summary generation and email rewriting can be manipulated to display users. This vulnerability pursues a significant risk, as the attackers can potentially take advantage of it to operate online scams. Meanwhile, the Mountain view-based tech veteran allegedly stated that it has not yet seen this manipulation technique used against users.

    The researcher claims that Gemini is insecure to accelerate injections in Gmail

    Was vulnerable Spibled and performed By researcher Marco Figuero, Jenai Bug Bounty Program Manager at Mozilla, AI Tools through Bag Bunty Program of Mozilla, through 0 dein. Interestingly, to trigger this vulnerability, the scammer does not need to pull any high-profile cyber heirs. Instead, it can be done with a simple text command, which is known as early injections.

    Prompt injection is a type of attack on AI chatbots where an attacker deliberately manipulates input or promises to behave the model in an unexpected or malicious manner. In this particular scenario, the researcher used indirect early injections, where malicious signs are embedded inside a document, email or a web page.

    According to the researcher, he just wrote a long email and finally added some hidden text, including early injections. There was no URL or Attachment in the email, making it easier to reach the receiver’s primary inbox.

    Gemini in Gmail is unsafe for injection-based fishing attacks, researcher finds

    Adding a hidden malicious message to the email
    Photo Credit: 0DIN/Marco Figueroa

    As shown in the image, the attacker used a white color font on a white page to write malicious messages. This lesson is generally invisible to the receiver of email. Other methods of connecting hidden text include using a zero font size, off-screen text placement and other HTML or CSS tricks.

    Now, if the receiver uses Gemini’s “email” facility, the chatbot will process the hidden text and take the command, without finding the user ever detecting, Figuro said. He also said that the chances of chatbot increase after the command if the message is wrapped inside a administrator tag, as it considers high-primary request.

    Gemini hack 2 0din Gemini in Gmail vulnerability

    Gemini repeats malicious messages in Verbatim Summary
    Photo Credit: 0DIN/Marco Figueroa

    The cyber security researcher showed in another screenshot that Mithun gave a really malicious message and displayed it as part of his email summary. Since the message is now coming from Gemini, rather than an email from a potential stranger, the victim may be more likely to believe and follow instructions, falling for the scam.

    BlappingCopper Contacted For Google to ask about vulnerability, and a spokesperson said the company has not seen any evidence of similar manipulation so far. Additionally, it was also revealed that Google is in the process of implementing some mitigations to quick injection-based adverse attacks.

    attacks finds Fishing Gemini Gmail injectionbased researcher unsafe
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleAndroid Malware uses distorted APK to detect konfety
    Next Article Develop a garden pet mutation tier list – Best mutation for pets – gamezebo
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    Can Apple create an AI search engine for rival Gemini and Chatgate? Here’s how it can succeed

    August 4, 2025
    Security

    Fashion giant channel hit salesforce data theft attacks

    August 4, 2025
    Security

    Gemini adds powerful new deep think models – what it does and who can try it

    August 4, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    You can now use T -Mobile Starlink Service to send images, audio and video – how is here

    August 4, 2025

    Utorrent Torrent Client Review | Tekardar

    August 4, 2025

    Can Apple create an AI search engine for rival Gemini and Chatgate? Here’s how it can succeed

    August 4, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.