Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Google won’t fix new ASCII smuggling attack in Gemini
    Security

    Google won’t fix new ASCII smuggling attack in Gemini

    PineapplesUpdateBy PineapplesUpdateOctober 8, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Google won’t fix new ASCII smuggling attack in Gemini
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Google won’t fix new ASCII smuggling attack in Gemini

    Google has decided not to fix a new ASCII smuggling attack in Gemini, which could be used to provide fake information to an AI assistant, change the behavior of models, and quietly poison your data.

    ASCII smuggling is an attack where special characters from the tagged Unicode block are used to introduce payloads that are invisible to users, but can still be detected and processed by large language models (LLMS).

    This is similar to other attacks that researchers have recently presented against Google Gemini, all of which exploit a difference between what users see and what the machine reads, such as manipulating CSS or exploiting GUI limitations.

    While the susceptibility of LLMS to ASCII smuggling attacks is not a new finding, as several researchers have explored this possibility since the advent of generative AI tools, the level of risk is now different (1, 2, 3, 4,

    Previously, chatbots could only be maliciously manipulated by such attacks if specially crafted prompts were pasted to the user. With the rise of agent AI tools like Gemini, which have extensive access to sensitive user data and can perform tasks autonomously, the threat is more significant.

    Victor Markopoulos, a security researcher at the company Firetail Cybersecurity Tested ASCII Smuggling against several widely used AI tools and found that Gemini (calendar invites or emails), DeepSec (signals), and Grok (x posts), are vulnerable to the attack.

    Cloud, CHATGPT, and Microsoft Copilot proved to be secure against ASCII smuggling, implementing some form of input sanitization, Firetail found.

    Vulnerability to ASCII Smuggling
    Vulnerability to ASCII smuggling
    Source: Firetail

    Regarding Gemini, its integration with Google Workspace poses a high risk, as attackers can use ASCII smuggling to embed hidden text in calendar invites or emails.

    Markopoulos found that it is possible to hide instructions on calendar invite titles, overwrite organizer details (identity spoofing), and smuggle hidden meeting details or links.

    Calendar entry as user posts it (left) and Gemini chats with Poison Data (right)
    Calendar entry as user posts it (left) and Gemini chats with Poison Data (right)
    Source: Firetail

    Regarding the risk from emails, the researcher says that “For users with LLMs linked to their inboxes, a simple email with hidden commands could instruct the LLMs to search the inbox for sensitive items or send contact details, turning a standard phishing attempt into an autonomous data extraction tool.”

    LLMS instructed users browsing websites may also stumble upon payloads hidden in product descriptions and feed them with malicious URLs to trick users.

    The researcher reported the findings to Google on September 18, but the tech giant dismissed the issue as not being a security bug and could only be exploited in the context of social engineering attacks.

    Nevertheless, Markopolos showed that the attack could trick Gemini into supplying false information to users. In one example, the researcher passed an invisible instruction that Gemini processed to introduce a potentially malicious site as the place to get a good quality phone with a discount.

    Other tech firms, however, have a different take on these types of problems. For example, Amazon published detailed safety guidance On the subject of Unicode character smuggling.

    BleepingComputer has contacted Google for further clarification on the bug, but we have not yet received a response.


    Pikus Base Summit

    attend Breach and Attack Simulation Summit and experience future of security verificationHear from top experts and see how AI-powered base Changing the breach and attacking simulation.

    Don’t miss the event that will shape the future of your security strategy

    ASCII Attack fix Gemini Google smuggling wont
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleUsing SSH on macOS is easy, thanks to this built-in connection manager
    Next Article Huawei’s new open source technology shrinks LLM to run on less powerful, less expensive hardware
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    A new earbud security flaw could leave you a victim of remote spying – here’s how to fix it

    January 18, 2026
    Startups

    OpenAI, Anthropic and Google all have new AI healthcare tools – here’s how they work

    January 17, 2026
    Startups

    Your Bluetooth headphones may be under attack – here’s what to do next

    January 15, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    Google tests AI-operated audio overview in search results for some questions

    June 16, 20250 Views
    Our Picks

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2026 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.