{"id":475339,"date":"2026-02-12T15:28:08","date_gmt":"2026-02-12T15:28:08","guid":{"rendered":"https:\/\/www.newsbeep.com\/au\/475339\/"},"modified":"2026-02-12T15:28:08","modified_gmt":"2026-02-12T15:28:08","slug":"gemini-hit-with-100000-prompts-in-cloning-attempt","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/au\/475339\/","title":{"rendered":"Gemini hit with 100,000+ prompts in cloning attempt"},"content":{"rendered":"<p id=\"anchor-e8c607\" class=\"body-graf\">Google says its flagship artificial intelligence chatbot, Gemini, has been inundated by \u201ccommercially motivated\u201d actors who are trying to clone it by repeatedly prompting it, sometimes with thousands of different queries \u2014 including one campaign that prompted Gemini more than 100,000 times.<\/p>\n<p id=\"anchor-b50f42\" class=\"body-graf\">In a report published Thursday, Google said it has increasingly come under \u201cdistillation attacks,\u201d or repeated questions designed to get a chatbot to reveal its inner workings. Google described the activity as \u201cmodel extraction,\u201d in which would-be copycats probe the system for the patterns and logic that make it work. The attackers appear to want to use the information to build or bolster their own AI, it said.<\/p>\n<p id=\"anchor-a998fa\" class=\"body-graf\">The company believes the culprits are mostly private companies or researchers looking to gain a competitive advantage. A spokesperson told NBC News that Google believes the attacks have come from around the world but declined to share additional details about what was known about the suspects.<\/p>\n<p id=\"anchor-c557a8\" class=\"body-graf\">The scope of attacks on Gemini indicates that they most likely are or soon will be common against smaller companies\u2019 custom AI tools, as well, said John Hultquist, the chief analyst of Google\u2019s Threat Intelligence Group.<\/p>\n<p id=\"anchor-1be5d2\" class=\"body-graf\">\u201cWe\u2019re going to be the canary in the coal mine for far more incidents,\u201d Hultquist said. He declined to name suspects.<\/p>\n<p id=\"anchor-e55a82\" class=\"body-graf\">The company considers distillation to be intellectual property theft, it said.<\/p>\n<p id=\"anchor-d2e903\" class=\"body-graf\">Tech companies have spent billions of dollars racing to develop their AI chatbots, or large language models, and consider the inner workings of their top models to be extremely valuable proprietary information.<\/p>\n<p id=\"anchor-6efb8d\" class=\"body-graf\">Even though they have mechanisms to try to identify distillation attacks and block the people behind them, major LLMs are inherently vulnerable to distillation because they are open to anyone on the internet.<\/p>\n<p id=\"anchor-4cd8d1\" class=\"body-graf\">OpenAI, the company behind ChatGPT, <a href=\"https:\/\/www.nbcnews.com\/tech\/tech-news\/openai-says-deepseek-may-inapproriately-used-data-rcna189872\" target=\"_blank\" rel=\"nofollow noopener\">accused its Chinese rival DeepSeek<\/a> last year of conducting distillation attacks to improve its models.<\/p>\n<p id=\"anchor-fedf67\" class=\"body-graf\">Many of the attacks were crafted to tease out the algorithms that help Gemini \u201creason,\u201d or decide how to process information, Google said.<\/p>\n<p id=\"anchor-514c82\" class=\"body-graf\">Hultquist said that as more companies design their own custom LLMs trained on potentially sensitive data, they become vulnerable to similar attacks.<\/p>\n<p id=\"anchor-01bba8\" class=\"endmark body-graf\">\u201cLet\u2019s say your LLM has been trained on 100 years of secret thinking of the way you trade. Theoretically, you could distill some of that,\u201d he said.<\/p>\n","protected":false},"excerpt":{"rendered":"Google says its flagship artificial intelligence chatbot, Gemini, has been inundated by \u201ccommercially motivated\u201d actors who are trying&hellip;\n","protected":false},"author":2,"featured_media":475340,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[256,254,255,64,63,105],"class_list":{"0":"post-475339","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-artificial-intelligence","8":"tag-ai","9":"tag-artificial-intelligence","10":"tag-artificialintelligence","11":"tag-au","12":"tag-australia","13":"tag-technology"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/475339","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/comments?post=475339"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/475339\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media\/475340"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media?parent=475339"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/categories?post=475339"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/tags?post=475339"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}