By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Gemini hackers are using its own tools against it
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Gemini hackers are using its own tools against it
News

Gemini hackers are using its own tools against it

News Room
Last updated: 2025/03/29 at 7:35 PM
News Room Published 29 March 2025
Share
SHARE

Edgar Cervantes / Android Authority

TL;DR

  • Researchers used the Gemini fine-tuning tool to help hack the Google AI chatbot.
  • The new method, called Fun-Tuning, adds nonsense text that helps trick the AI into following hidden instructions.
  • Google says it’s always working on defenses, but the researchers believe that fixing the issue may impact useful features for developers.

They say it takes a thief to catch a thief, and perhaps the same is true when it comes to hacking LLMs. Academic researchers have discovered a way to make Google’s Gemini AI models more vulnerable to hacking — and they did it using Gemini’s own tools.

The technique was developed by a team from UC San Diego and the University of Wisconsin, as reported in Ars Technica. Dubbed “Fun-Tuning,” it significantly increases the success rate of prompt injection attacks, where hidden instructions are embedded in text that an AI model reads. These attacks can cause the model to leak information, give incorrect answers, or take other unintended actions.

What makes the method interesting is that it uses Gemini’s own fine-tuning feature, which is usually intended to help businesses train the AI on custom datasets. Instead, the researchers used it to test and refine prompt injections automatically. It’s kind of like teaching Gemini how to fool itself.

It’s kind of like teaching Gemini how to fool itself.

Fun-Tuning works by generating strange-looking prefixes and suffixes that are added to an otherwise ineffective prompt injection. These additions “boost” the prompt and make it much more likely to succeed. In one case, a prompt that failed on its own was made effective by wrapping it in affixes like “wandel ! ! ! !” and “formatted ! ASAP !”

In testing, the hack achieved a 65% success rate on Gemini 1.5 Flash and an 82% success rate on the older Gemini 1.0 Pro model — more than double the baseline success rates without Fun-Tuning. The attacks also transferred well between models, meaning an injection that worked on one version often worked on others too.

The vulnerability stems from the way fine-tuning works. During training, Gemini provides feedback in the form of a “loss” score, which is a number that reflects how far the model’s answer is from the desired result. Attackers can exploit that feedback to optimize their prompts until the system finds a successful one.

Samsung Galaxy Z Flip 6 gemini pop up

Ryan Haines / Android Authority

Google didn’t respond directly to the Fun-Tuning technique. In a general statement, a spokesperson said that “defending against this class of attack has been an ongoing priority for us” and pointed to existing safeguards against prompt injection and harmful responses. The company added that Gemini is regularly tested against these kinds of attacks through internal “red-teaming” exercises.

The researchers feel the issue may be tricky to fix since the feedback that enables Fun-Tuning is a core part of how fine-tuning works. In other words, making it less effective for Fun-Tuning risks reducing its utility overall.

Got a tip? Talk to us! Email our staff at [email protected]. You can stay anonymous or get credit for the info, it’s your choice.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Collinsworth breaks silence after months off air with 3-word message
Next Article Digital torchbearer to perform at closing ceremony of 19th Asian Games · TechNode
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Dance Music Is Booming Again. What’s Different This Time? A Lot.
Software
Educators seek to combat AI challenges in the classroom
News
The Tech Guys Are Fighting. Literally.
News
2025’s most romantic horror movie just crashed the Netflix top 10 — and it’s a frontrunner for my favorite film of the year
News

You Might also Like

News

Educators seek to combat AI challenges in the classroom

6 Min Read
News

The Tech Guys Are Fighting. Literally.

20 Min Read
News

2025’s most romantic horror movie just crashed the Netflix top 10 — and it’s a frontrunner for my favorite film of the year

8 Min Read
News

Galaxy S25 Edge leak reveals all the cases you’ll need to keep the super-thin phone safe

4 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?