A vulnerability in Google’s Gemini voice assistant that could have allowed attackers to hijack the AI using messaging notifications.

A prompt injection flaw in Google Gemini's voice assistant let attackers hide malicious commands in notifications, enabling social engineering and more.

Poisoned Android notifications could hijack Google Gemini’s voice assistant without a malicious app.