Sunday, August 10, 2025

Researchers Use Hidden Calendar Invites to Hijack AI

Once they're in, a hacker can use Gemini to start Zoom calls, send spam, read browser content, and delete calendar events.

Comments

More from the article ...

... New research demonstrates how generative AI models like Google's Gemini can be manipulated to control real-world devices. The attack, developed by Ben Nassi from Tel Aviv University, Stav Cohen from Technion, and Or Yair from SafeBreach, uses a technique known as indirect prompt injection.

The attack involves placing hidden commands inside calendar invites. When a user asks Gemini to summarize scheduled events, it processes the prompts without realizing they could be harmful. This triggers actions like opening smart window shutters, switching off lights, or activating a boiler.

The AI isn't given these commands directly; the prompts are hidden in events it pulls context from. The devices can also be triggered when users say common words like "thanks" in response to the AI, according to Wired.

Fourteen different attacks were developed as part of the research, named "Invitation Is All You Need." Other methods are: using Gemini to start Zoom calls, send spam, read browser content, and delete calendar events. In one case, Gemini read abusive messages drawn from a prompt injection designed to shock the user. ...


#1 | Posted by LampLighter at 2025-08-10 12:02 AM

Drudge Retort Headlines

Military Preparing for National Guard Activation in Washington D.C. (158 comments)

Half of GOP Would Still Vote for Trump If Implicated in Epstein Crimes (81 comments)

Trump to Homeless: Move Out of Washington, DC 'Immediately' (68 comments)

Military Plans 'reaction force' to Use Against Americans (38 comments)

Goldman Sachs: Consumers, Businesses Bearing Brunt of Tariffs (28 comments)

As Electric Bills Rise, Do Data Centers Share Blame (28 comments)

FBI Agents to Patrol Washington DC Streets (26 comments)

Trump's Unforgivable Sin (23 comments)

Mar-a-Lago Inspires Trump for Rose Garden Redesign (21 comments)

Vance: 'We're Done Funding the Ukraine War Business' (21 comments)