// Alert

Gemini threat report

Researchers at Adversa AI discovered 'Cryptographic Context Injection,' a technique that bypasses Gemini's AI safety guardrails by concealing malicious instructions in encrypted prompts that are decrypted inside trusted execution environments. The attack was reported to xAI on June 3, 2026, with no response from Google as of August 21, 2026; jailbreaks fall outside Google's vulnerability disclosure program scope. Success rate for the attack against Gemini had declined by August but the underlying technique poses a risk.

// Get alerts for Gemini