// Alert

Gemini threat report

Pillar Security researchers disclosed a prompt injection vulnerability in Google Gemini CLI that allowed attackers to gain Editor-level access to internal Google Cloud projects. By embedding hidden instructions in a GitHub issue, researchers triggered prompt injection in an AI agent used for bug triage, obtaining Workload Identity Federation credentials that enabled impersonation of a privileged account. The flaw has been remediated by Google.

// Get alerts for Gemini