Story perspectives
Google Patches Critical Vulnerabilities in Gemini AI Suite
10/1/2025
1 of 1
Story summary
- Tenable identified three vulnerabilities in Google's Gemini AI suite, the Gemini Trifecta.
- The flaws affect Gemini Cloud Assist, Search Personalization Model, and Browsing Tool.
- In Cloud Assist, attackers could inject log entries to trigger commands.
- In Search Personalization Model, prompt injections via history could expose user data.
- Google patched all vulnerabilities. Tenable recommends treating AI features as active attack surfaces.
