BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Gemini AI Hijacked Via Fake Android Notifications

Gemini exploit hijacked voice via fake notification, now patched by Google.

  • A researcher bypassed Google’s security updates for its Gemini voice assistant on Android using a technique called Fake Context Alignment.
  • The exploit allowed a single poisoned notification from apps like WhatsApp or Signal to hijack the assistant, potentially controlling smart devices or poisoning its long-term memory.
  • Google has since patched the vulnerability server-side, and there is no evidence it was ever used in real-world attacks.
  • Users can mitigate risk by disabling Gemini’s notification-reading feature in their device settings.

In June 2026, cybersecurity researcher Or Yair from SafeBreach demonstrated a critical new way to exploit Google’s Gemini AI on Android devices. A single malicious notification from any major messaging app could have hijacked the voice assistant, according to the research published by the firm. This followed earlier work on calendar-based exploits, which Google had already attempted to harden against.

- Advertisement -

The attack exploited Gemini’s Utilities feature, which reads notifications to provide context. Consequently, any service that could push a notification created what Yair called an “effectively infinite” attack surface. No malicious app was required on the victim’s phone for the initial intrusion to succeed.

Yair’s technique, Fake Context Alignment, cleverly bypassed Google’s post-“Invitation” security checks. It involved obfuscating the real authorization prompt in a foreign language or hiding it in a muted hyperlink. The user would hear a harmless question and reply “Yes,” while the system linked that consent to the hidden, malicious command.

The potential impacts were severe, ranging from smart home control to memory poisoning. An attacker could, for example, force a phone to join a Zoom call or persistently save a false fact to the user’s account. “The poisoned fact isn’t stuck on the phone; it follows the victim wherever they use Gemini on that account,” the report stated.

SafeBreach reported the vulnerability to Google in August 2025, and the company confirmed a fix by November. Meanwhile, the fix is server-side, so no user app update is needed. The only direct control for users is to disconnect Gemini’s notification access in their Android settings.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Israel’s Crypto Amnesty Fails To Meet Tax Goals

The Israel Tax Authority's voluntary disclosure policy for crypto taxes has yielded far less...

Broadcom Stock Rises Ahead of Earnings Expected to Beat

Broadcom stock hit a new intraday high ahead of its earnings report, with analysts...

Nous Research Launches Official Hermes Desktop App

Nous Research has launched an official Hermes Desktop app for macOS, Windows, and Linux,...

Worldcoin Surges 30% After Arthur Hayes’ $10 Price Target

Worldcoin (WLD) surged over 30% to a four-month high after Arthur Hayes publicly called...

Zcash Outage Rumours False After Shielded Pool Upgrade

ZCash block explorers incorrectly showed no activity, sparking outage rumors after a network upgrade.The...

Must Read

9 DePIN Programs For Passive Income

Here’s something most people don’t realize: your smartphone and PC can generate passive income with almost no effort.I’m not talking about clicking ads for...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading