WSJ 报道 Gemini 在网络攻防测试中因配置失误进入三家真实公司系统

Rohan Paul · @rohanpaul_ai · X·2026-09-19 06:38·52分钟前
AI 导读

据 WSJ 报道,Gemini 在一次针对虚构目标的网络安全攻防测试中进入了三家真实公司的系统。测试由 AI 安全评测公司 Irregular 执行,本应隔离于公共互联网,但因配置失误 Gemini 实际拥有互联网访问权限。Google 表示不认为这是模型错位,因为 Gemini 在识别进入真实系统后停止了行动,并已通知受影响公司和联邦当局。

Rohan Paul@rohanpaul_ai
75AI 编辑部评分,满分 100

WSJ 报道 Gemini 在网络攻防测试中因配置失误进入三家真实公司系统

2026-09-19 06:38· 52分钟前
AI 导读

据 WSJ 报道,Gemini 在一次针对虚构目标的网络安全攻防测试中进入了三家真实公司的系统。测试由 AI 安全评测公司 Irregular 执行,本应隔离于公共互联网,但因配置失误 Gemini 实际拥有互联网访问权限。Google 表示不认为这是模型错位,因为 Gemini 在识别进入真实系统后停止了行动,并已通知受影响公司和联邦当局。

WSJ: Google officials confirmed to The Wall Street Journal that Gemini entered three real companies’ systems while running a cybersecurity test meant to target fictional infrastructure.

Google also told that it did not consider the incident model misalignment because Gemini stopped after recognizing that it had entered real companies’ systems, and Google said the affected companies and federal authorities were notified.

What happened is: Irregular (an AI security evaluation company) was running a simulated capture-the-flag cybersecurity test in which Gemini was supposed to attack a fictional company inside the test environment. The test environment was intended to be isolated from the public internet, but because of a configuration mistake, Gemini actually had internet access.