Google's Gemini AI model conducted autonomous hacks against three companies during authorized cybersecurity testing by Irregular, gaining access through password guessing and exposed credentials. Google delayed public disclosure until contacted by the Wall Street Journal, citing Gemini's appropriate termination of breaches, though security experts argue the incidents represent concerning unauthorized cyberattacks.