A prompt injection was spotted by a cybersecurity firm

A prompt injection flaw in Google Gemini's voice assistant let attackers hide malicious commands in notifications, enabling social engineering and more.

Poisoned Android notifications could hijack Google Gemini’s voice assistant without a malicious app.