unilad homepage
  • News
    • UK News
    • US News
    • World News
    • Crime
    • Health
    • Money
    • Sport
    • Travel
  • Film and TV
    • Netflix
  • Music
  • Tech
  • Features
  • Celebrity
  • Politics
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • SPORTbible
  • GAMINGbible
  • Tyla
  • UNILAD Tech
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Archive
  • Topics A-Z
  • Authors
Facebook
Instagram
X
Threads
TikTok
YouTube
Submit Your Content
Experts issue urgent warning to 1,800,000,000 Gmail users over new type of attack that fools AI

Home> News> US News

Published 18:36 17 Jul 2025 GMT+1

Experts issue urgent warning to 1,800,000,000 Gmail users over new type of attack that fools AI

Google has said these attacks on users

Gerrard Kaonga

Gerrard Kaonga

google discoverFollow us on Google Discover
Featured Image Credit: Jakub Porzycki/NurPhoto via Getty Images

Topics: Google, Technology, Artificial Intelligence, News

Gerrard Kaonga
Gerrard Kaonga

Gerrard is a Journalist at UNILAD and has dived headfirst into covering everything from breaking global stories to trending entertainment news. He has a bachelors in English Literature from Brunel University and has written across a number of different national and international publications. Most notably the Financial Times, Daily Express, Evening Standard and Newsweek.

Advert

Advert

Advert

Last month, Google warned that Gmail users could be victims of a new form of attack from hackers wishing to get their hands on their data.

Hackers using the internet to trick people into handing over their data and passwords isn’t anything new, but latest trends show bad actors getting more creative.

In a blog post last month on June 13, Google emphasized the seriousness of these attempts to get people’s data.

In the post it read: “With the rapid adoption of generative AI, a new wave of threats is emerging across the industry with the aim of manipulating the AI systems themselves.

Advert

“One such emerging attack vector is indirect prompt injections.”

Ultimately, hackers are using Google Gemini, the built in AI tool in Gmail and Workplace, against users, tricking the AI into helping them extract information from users.

Hackers have been using Google Gemini to get people's passwords and data (Avishek Das/SOPA Images/LightRocket via Getty Images)
Hackers have been using Google Gemini to get people's passwords and data (Avishek Das/SOPA Images/LightRocket via Getty Images)

Hackers are sending emails with hidden instructions that prompt Gemini to generate fake phishing warnings that appear to come from Google, tricking users into sharing their account password or visiting malicious sites.

Mozilla's 0din security team found proof of one of the attacks last week.

Their report showed how the AI could be fooled into displaying a fake security alert. It would claim that the user’s passwords or account had been compromised, ultimately prompting the user to take action and inevitably handing over their passwords.

The trick works by embedding the prompt in white text that blends into the email background. So, if a user was to click ‘summarize this email’ Gemini would process the hidden message, not just the visible text.

Odin advisors have said that Google’s 1.8 billion Gmail users need to ignore any Google warnings within AI summaries as this is now how Google issues user warning.

How the the attack may appear in an email (0din)
How the the attack may appear in an email (0din)

In the Google blog post, the company explained how it is constantly making improvements to its technologies to better fight against these attacks and hackers.

The blog read: “Google has taken a layered security approach introducing security measures designed for each stage of the prompt lifecycle.

“From Gemini 2.5 model hardening, to purpose-built machine learning (ML) models detecting malicious instructions, to system-level safeguards, we are meaningfully elevating the difficulty, expense, and complexity faced by an attacker. This approach compels adversaries to resort to methods that are either more easily identified or demand greater resources.

“This layered approach to our security strategy strengthens the overall security framework for Gemini – throughout the prompt lifecycle and across diverse attack techniques.”

Choose your content:

3 mins ago
15 mins ago
an hour ago
2 hours ago
  • Brian Rasic/Getty Images
    3 mins ago

    Five symptoms of MS that could be easily mistaken as The Osmonds star Alan Osmond dies aged 76

    Alan Osmond had been battling the condition for decades after being diagnosed back in 1987

    Celebrity
  • Getty Stock
    15 mins ago

    Nobel Prize-winning physicist predicts date for humanity's destruction

    Humanity's destruction is a lot closer than you think, the physicist claims

    News
  • Charley Gallay/Getty Images for Netflix
    an hour ago

    Love on the Spectrum star Abbey Romeo's mom explains split with David after 5 years

    She said people were 'missing the point' on Abbey Romeo and David Isaacman's relationship

    Celebrity
  • Getty Stock Images
    2 hours ago

    'Natural Ozempic' could be just as effective without side effects, scientists say

    Scientists at Stanford Medicine have shared insights to what could be the next best weight-loss drug

    News
  • Urgent warning to billions of Gmail users over dangerous 'no-reply' attack
  • Experts issue warning to all iPhone users over Apple Pay scam that is draining bank accounts
  • Expert shares the three jobs that AI can't replace
  • Urgent warning to billions of Gmail users over texting scam as experts reveal how to prevent it