> ## Content Index
> Fetch the complete content index at: https://www.metacurity.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Google’s Gemini hacked three real companies during a cybersecurity test
- URL: https://www.metacurity.com/googles-gemini-hacked-three-real-companies-during-a-cybersecurity-test/
- Published: 2026-09-21T09:08:01.000Z
- Updated: 2026-09-21T09:08:01.000Z
- Description: The AI agent guessed a password and used credentials found in public repositories after gaining internet access, the first known case of Google’s AI autonomously breaching outside systems.
- Author: Cynthia B Brumfield
- Tags: Cybersecurity, News, #no-feature-image

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/Gemini_PrimaryLogo_FullColor_1.original-2.png)

Source: Google

**Important Publishing Notice:* Metacurity will be traveling from Tuesday, October 22 through Saturday, October 26\. We resume regular publication on Monday, October 28.*

---

SPONSORED BY ORIGIN 

### When AI agents cause incidents, will you have the evidence?

*A new endpoint-security framework examines the evidence gap created by AI agents—and how security teams can close it.*

If an AI agent caused an incident at your company tomorrow, what evidence could you actually produce?

Ask that question of most security teams, and the honest answer is a prompt log and a guess. It ran commands, edited files, called tools, and reached systems on an employee's laptop with real credentials. The prompt and the final answer were kept. Everything in between disappeared the moment the session closed.

That gap now has a name and a market map. On July 22, Software Analyst Cyber Research (SACR) published its report on Endpoint Control and Prevention, written by Francis Odum and Lawrence Pingree. The report argues that the threat on the endpoint is moving up the stack again, past the file that antivirus was built for and past the process that EDR was built for, to the agents doing real work with delegated authority. It maps five zones for securing that layer, from software posture through data controls. One of them is agent runtime observability, where Origin sits.

On Thursday, October 1 at 11 AM Eastern, Lawrence Pingree and Origin founder Spencer Thompson sit down for a fireside chat on the report. The first half is the report itself. What each zone covers, why the authors drew the lines where they did, and what a security leader should take from a framework that treats agent activity as its own layer. The second half is what that layer looks like in practice. Spencer goes deep on the trace, the record Origin keeps of an agent session on the endpoint, and what you can do with it. Who started the work, what was asked, what the agent reached, what changed, and how you get from that record to an answer.

This is the report that put AI agents on the endpoint security map, walked through by one of the people who wrote it, then made concrete by the people who build for it. [Read the analyst report](https://www.originhq.com/blog/sacr-maps-endpoint-observability?u%20tm%5Fsource=metacurity&utm%5Fmedium=newsletter&utm%5Fcampaign=direct-buys&utm%5Fcontent=feature-0921&ref=metacurity.com).

Register for the briefing [here](https://www.originhq.com/webinar/next-layer-of-endpoint-security?utm%5Fsource=metacurity&utm%5Fmedium=newsletter&utm%5Fcampaign=direct-buys&utm%5Fcontent=feature-0921). The recording goes to everyone who registers, so sign up even if 11 AM Eastern does not work for you.

A few words on Origin for readers who have not met us. Origin Technology is the endpoint AI observability platform for agentic monitoring and security. A sensor on the endpoint records the agent's work as a trace: the prompt, the tool calls, the files touched, the systems reached, and the changes made, on one timeline. Security teams use it to find agents running in their environment, monitor what they're doing, and investigate when something unexpected happens. Other tools capture parts of the activity. Origin reconstructs the work.

[Register for the briefing](https://www.originhq.com/webinar/next-layer-of-endpoint-security?utm%5Fsource=metacurity&utm%5Fmedium=newsletter&utm%5Fcampaign=direct-buys&utm%5Fcontent=feature-0921)

---

### Google’s Gemini model accessed the internet and hacked other companies during a test of its cybersecurity capabilities, the first known example of the company’s artificial-intelligence systems autonomously committing such an act.

The hacks, which the company confirmed on Friday, occurred in May as part of a test run by the company Irregular, which was also involved in similar incidents disclosed by OpenAI, Anthropic and Meta.

In one of the cases, the model guessed passwords until it gained access to a protected system. In the other two cases, the model found credentials in a public repository that allowed it to then access protected systems. In each case, the model ended the intrusion after determining it had accessed a real company’s systems, Google said.

Irregular notified Google about the hacks at the end of July, Google and Irregular said, in the wake of the discovery that OpenAI’s agents had hacked the AI software company Hugging Face. Google didn’t disclose the hacks until The Wall Street Journal reached out with inquiries this week.

Companies are wrestling with how and when to disclose instances of security breaches and model misbehavior, amid a steady drumbeat of such incidents and rising fears over out-of-control AI. Some security breaches have been voluntarily disclosed by the companies themselves; others have been discovered by security researchers and revealed in the media, including a May cyberattack conducted by OpenAI agents against a popular online service for coders.

Google said it didn’t consider the hacks to warrant public disclosure—because its model didn’t cause harm to the companies and ended each intrusion immediately upon determining it had hacked a real company rather than a simulated one. Google compared the episode to a “bug bounty” program in which hackers are rewarded for finding and reporting security vulnerabilities to their owners.

“This event highlights the importance of training powerful AI models to act responsibly,” Heather Adkins, Google’s vice president of security engineering, said in a statement. “In this case, the model acted appropriately.” 

Jack Cable, the CEO of the AI security startup Corridor and a white-hat hacker, said he thought that explanation focused on the severity of the incident when the real issue was that the AI agent had accidentally hacked another company’s systems. 

The Gemini hacks resulted from a case of mistaken identity, Google said.

The hacks occurred while the model was participating in a “capture the flag” exercise conducted on infrastructure belonging to Irregular to test the model’s cybersecurity capabilities. It was tasked with retrieving information from software operated by a fictional company inside the testing environment. The fictional company shared the same name as a real company. 

Although the model wasn’t intended to be able to get online, internet access was unintentionally made available, according to Irregular. In the first case, the model was able to guess a password and access the real company’s service, Google said. Then, it realized that it had accessed a real company, stopped itself, and left, according to Google. 

The other hacks occurred in different runs of the test. In both of those instances, the model performed web searches with the name of the company, Google said. Those searches led it to two different public online repositories, containing credentials belonging to other companies. The model tried those credentials in hopes that they would lead to completing the evaluation. But after successfully using the credentials, the model realized it had accessed real companies and stopped, Google said. ([Erin Woo and Robert McMillan / Wall Street Journal](https://www.wsj.com/tech/ai/gemini-hacked-three-companies-in-first-known-breakout-by-googles-ai-5c0baba2?st=ZQ2NY6&reflink=desktopwebshare%5Fpermalink&ref=metacurity.com))

**Related:** [*CNBC*](https://www.cnbc.com/2026/09/18/googles-gemini-becomes-latest-ai-model-to-break-out-and-hack-computer-systems.html?ref=metacurity.com)*,* [*Axios*](https://www.axios.com/2026/09/19/google-safety-incidents-testing-hacks?ref=metacurity.com)*,* [*BBC*](https://www.bbc.com/news/articles/c607l0k72rlvo?ref=metacurity.com)*,* [*TechCrunch*](https://techcrunch.com/2026/09/19/googles-gemini-is-the-latest-ai-model-to-hack-other-companies/?ref=metacurity.com)*,* [*Reuters*](https://www.reuters.com/business/gemini-hacked-three-companies-first-known-breakout-by-google-ai-wsj-reports-2026-09-18/?ref=metacurity.com)*,* [*Washington Post*](https://www.washingtonpost.com/technology/2026/09/18/google-gemini-ai-hacked-into-other-companies-during-internal-testing/?ref=metacurity.com)*,* [*New York Times*](https://www.nytimes.com/2026/09/18/technology/google-gemini-ai.html?unlocked%5Farticle%5Fcode=1.CVE.21RA.QREMYue3elSx&smid=nytcore-ios-share&ref=metacurity.com)*,* [*Bloomberg*](https://www.bloomberg.com/news/articles/2026-09-18/google-s-gemini-ai-system-hacked-three-systems-in-safety-tests?ref=metacurity.com)*,* [*Simon Willison's Weblog*](https://simonwillison.net/2026/Sep/18/gemini-hacked-three-companies/?ref=metacurity.com)*,* [*ABC*](https://www.abc.net.au/news/2026-09-19/gemini-google-ai-hacks-three-companies/107172128?ref=metacurity.com)*,* [*Security Affairs*](https://securityaffairs.com/199392/ai/google-gemini-also-broke-out-of-its-test-environment.html?ref=metacurity.com)*,* [*9to5Google*](https://9to5google.com/2026/09/19/google-confirms-gemini-hacked-into-three-companies-during-cybersecurity-test-months-ago/?ref=metacurity.com)*,* [*The Hans India*](https://www.thehansindia.com/technology/tech-news/google-claims-gemini-hacked-three-companies-but-stopped-before-causing-damage-1123454?ref=metacurity.com)*,* [*The Independent*](https://www.the-independent.com/tech/google-gemini-ai-hacked-three-other-companies-b3052890.html?ref=metacurity.com)*,* [*KEYE*](https://cbsaustin.com/news/nation-world/google-says-its-gemini-ai-model-hacked-3-other-companies-reports-artificial-intelligence-network-unauthorized-access-credentials-internet-cybersecurity-test-risks?ref=metacurity.com)*,* [*The Gateway Pundit*](https://www.thegatewaypundit.com/2026/09/woke-googles-gemini-ai-goes-rogue-hacks-three/?ref=metacurity.com)*,* [*CTech*](https://www.calcalistech.com/ctechnews/article/rkf76ehfzl?ref=metacurity.com)*,* [*Tech Times*](https://www.techtimes.com/articles/327757/20260919/gemini-hacked-three-companies-may-google-stayed-silent-seven-weeks.htm?ref=metacurity.com)*,* [*Digital Trends*](https://www.digitaltrends.com/computing/oh-hey-googles-gemini-ai-also-hacked-other-companies/?ref=metacurity.com)*,* [*Engadget*](https://www.engadget.com/2263198/google-gemini-escaped-testing-environment-hacked-three-companies/?ref=metacurity.com)*,* [*The Decoder*](https://the-decoder.com/googles-gemini-also-accidentally-hacked-three-real-companies-during-security-testing/?ref=metacurity.com)*,* [*Cyber Security News*](https://cybersecuritynews.com/google-gemini-ai-hacked-3-real-companies/?ref=metacurity.com)*,* [*Moneycontrol*](https://www.moneycontrol.com/technology/google-gemini-hack-ai-model-accessed-three-companies-during-cybersecurity-test-article-14033384.html?ref=metacurity.com)*,* [*Digit*](https://www.digit.in/news/general/google-says-gemini-ai-hacked-three-companies-during-cybersecurity-test-here-is-how.html?ref=metacurity.com)*,* [*MediaPost*](https://www.mediapost.com/publications/article/418137/google-confirms-ai-model-hacked-companies-in-cyber.html?ref=metacurity.com)*,* [*Financial Express*](https://www.financialexpress.com/life/technology/how-google-gemini-hacked-3-companies-during-ai-safety-tests/4342762/?ref=metacurity.com)*,* [*Gulf News*](https://gulfnews.com/technology/google-gemini-breached-three-companies-during-cybersecurity-test-1.500680278?ref=metacurity.com)*,* [*Gizmodo*](https://gizmodo.com/googles-gemini-hacked-three-companies-in-may-and-its-only-admitting-that-now-2000814420?ref=metacurity.com)*,* [*Business Today*](https://www.businesstoday.in/technology/artificial-intelligence/story/google-gemini-ai-hacked-three-real-companies-during-cyber-security-tests-556592-2026-09-19?ref=metacurity.com)*,* [*RTHK*](https://news.rthk.hk/rthk/en/component/k2/1870720-20260919.htm?spTabChangeable=0&ref=metacurity.com)*,* [*Livemint*](https://www.livemint.com/ai/another-rogue-ai-incident-google-says-its-gemini-model-hacked-three-other-companies-11789786426060.html?ref=metacurity.com)*,* [*Honolulu Star-Advertiser*](https://www.staradvertiser.com/2026/09/18/breaking-news/googles-gemini-hacks-3-companies-in-ai-testing-breakout/?ref=metacurity.com)*,* [*Newsmax*](https://www.newsmax.com/newsfront/gemini-google-ai/2026/09/18/id/1269952/?ref=metacurity.com)*,* [*Financial Times*](https://www.ft.com/content/158740d1-fde7-4dbc-a282-5830c3201189?ref=metacurity.com)*,* [*The Guardian*](https://www.theguardian.com/technology/2026/sep/18/google-gemini-ai-hack?ref=metacurity.com)*,* [*Tech in Asia*](https://www.techinasia.com/news/googles-gemini-hacked-3-companies-security-tests?ref=metacurity.com)*,* [*Hindustan Times*](https://www.hindustantimes.com/world-news/gemini-hacked-3-ai-companies-during-testing-by-cybersecurity-firm-google-confirms-after-report-101789774576431.html?ref=metacurity.com)*,* [*The Information*](https://www.theinformation.com/briefings/googles-gemini-model-hacks-companies-test?ref=metacurity.com)*,* [*Bloomberg Law*](https://news.bloomberglaw.com/tech-and-telecom-law/googles-gemini-ai-system-hacked-three-systems-in-safety-tests?ref=metacurity.com)*,* [*NBC News*](https://www.nbcnews.com/tech/tech-news/google-says-ai-model-gained-unauthorized-access-three-systems-rcna598651?ref=metacurity.com)*,* [*CyberInsider*](https://cyberinsider.com/google-gemini-hacked-three-firms-after-test-sandbox-exposed-web-access/?ref=metacurity.com)*,* [*r/technology*](https://www.reddit.com/r/technology/comments/1wkini8/googles%5Fgemini%5Fai%5Fhacked%5Fthree%5Fcompanies%5Fin/?ref=metacurity.com)*,* [*r/thebulwark*](https://www.reddit.com/r/thebulwark/comments/1wkgs1x/gemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst%5Fknown/?ref=metacurity.com)*,* [*r/Futurology*](https://www.reddit.com/r/Futurology/comments/1wkdpdn/gemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst%5Fknown/?ref=metacurity.com)*,* [*r/UnderReportedNews*](https://www.reddit.com/r/UnderReportedNews/comments/1wkaf62/ai%5Fhacks%5Fthree%5Fcompanies%5Fafter%5Fgetting%5Faccess%5Fto/?ref=metacurity.com)*,* [*r/accelerate*](https://www.reddit.com/r/accelerate/comments/1wk8rrm/photo%5Fof%5Fgemini%5Fbreaking%5Fout%5Fof%5Ftesting/?ref=metacurity.com)*,* [*r/technology*](https://www.reddit.com/r/technology/comments/1wk8gec/googles%5Fgemini%5Fbecomes%5Flatest%5Fai%5Fmodel%5Fto%5Fbreak/?ref=metacurity.com)*,* [*r/accelerate*](https://www.reddit.com/r/accelerate/comments/1wk793p/gemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst%5Fknown/?ref=metacurity.com)*,* [*r/ArtificialInteligence*](https://www.reddit.com/r/ArtificialInteligence/comments/1wk6b2i/reuters%5Fgemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst/?ref=metacurity.com)*,* [*r/singularity*](https://www.reddit.com/r/singularity/comments/1wk61n8/gemini%5Fhacked%5F3%5Fcompanies%5Fin%5Fits%5Ffirst%5Fbreakout/?ref=metacurity.com)*,* [*r/news*](https://www.reddit.com/r/news/comments/1wk5kv1/gemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst%5Fknown/?ref=metacurity.com)*,* [*r/GeminiAI*](https://www.reddit.com/r/GeminiAI/comments/1wk5gf6/exclusive%5Fgemini%5Fhacked%5Fthree%5Fcompanies%5Fin%5Ffirst/?ref=metacurity.com)*,* [*THE DECODER*](https://the-decoder.com/googles-gemini-also-accidentally-hacked-three-real-companies-during-security-testing/?mid=1&ref=metacurity.com#cid=3723122)*,* [*Big News Network*](https://www.mediapost.com/publications/article/418137/google-confirms-ai-model-hacked-companies-in-cyber.html?mid=1&ref=metacurity.com#cid=3722799)*,* [*The Times of Israel*](https://www.timesofisrael.com/google-says-its-gemini-ai-broke-out-and-hacked-three-companies-during-testing/?mid=1&ref=metacurity.com#cid=3722920)*,* [*The Next Web*](https://thenextweb.com/news/irregular-four-labs-one-issue-disclosure-timeline-gemini?mid=1&ref=metacurity.com#cid=3722733)*,* [*Tech Insider*](https://tech-insider.org/google-account-passkey-setup-2026/?mid=1&ref=metacurity.com#cid=3722726)*,* [*Forkast*](https://forkast.news/googles-gemini-breached-three-companies-in-first-known-ai-breakout-and-the-industry-has-a-containment-problem/?mid=1&ref=metacurity.com#cid=3722972)*,* [*Cyber Security News*](https://cybersecuritynews.com/google-gemini-ai-hacked-3-real-companies/?mid=1&ref=metacurity.com#cid=3723044)*,* [*heise online News*](https://www.heise.de/news/Fehlkonfiguration-im-Test-Gemini-greift-auf-drei-echte-Firmen-zu-11459067.html?wt%5Fmc=rss.red.ho.ho.atom.beitrag.beitrag&mid=1&ref=metacurity.com#cid=3723156)*,* [*Cyber Security News*](https://cybersecuritynews.com/google-gemini-ai-hacked-3-real-companies/?mid=1&ref=metacurity.com#cid=3722881)*,* [*heise online News*](https://www.heise.de/news/Fehlkonfiguration-im-Test-Gemini-greift-auf-drei-echte-Firmen-zu-11459067.html?wt%5Fmc=rss.red.ho.ho.atom.beitrag.beitrag&mid=1&ref=metacurity.com#cid=3723249)*,* [*Android Central* ](https://www.androidcentral.com/apps-software/ai/googles-gemini-went-rogue-and-breached-three-companies?mid=1&ref=metacurity.com#cid=3722766)*,* [*Sky News*](https://news.sky.com/story/googles-gemini-ai-hacks-three-other-companies-during-security-test-13589551?mid=1&ref=metacurity.com#cid=3722735)*,* [*Haaretz*](https://www.haaretz.com/israel-news/tech-news/2026-09-19/ty-article/.premium/google-gemini-hacked-other-companies-in-test-by-israeli-cybersecurity-firm/000001a0-b86e-d160-a3ae-beef8b290000?mid=1&ref=metacurity.com#cid=3722800)*,* [*Reuters*](https://www.google.com/url?rct=j&sa=t&url=https://www.aljazeera.com/news/2026/9/19/googles-gemini-ai-hacks-3-companies-in-security-test-then-stops&ct=ga&cd=CAIyGmNmODNlMDNkNWNhMzE4NWQ6Y29tOmVuOlVT&usg=AOvVaw2enTNogMDs7UCQXLQhzz--&mid=1&ref=metacurity.com#cid=3723573)*,* [*Futurism*](https://futurism.com/artificial-intelligence/google-asks-video-selfies?mid=1&ref=metacurity.com#cid=3723401)*,* [*CTech*](https://www.calcalistech.com/ctechnews/article/rkf76ehfzl?ref=metacurity.com)*,* [*TechCrunch*](https://techcrunch.com/2026/09/19/googles-gemini-is-the-latest-ai-model-to-hack-other-companies/?mid=1&ref=metacurity.com#cid=3723599)*,* [*New York Post*](https://nypost.com/2026/09/19/us-news/googles-gemini-ai-hacked-3-companies-during-security-tests/?mid=1&ref=metacurity.com#cid=3723364)*,* [*9to5Google*](https://9to5google.com/2026/09/19/google-confirms-gemini-hacked-into-three-companies-during-cybersecurity-test-months-ago/?mid=1&ref=metacurity.com#cid=3723399)*,* [*Android Central*](https://www.androidcentral.com/apps-software/ai/googles-gemini-went-rogue-and-breached-three-companies?ref=metacurity.com)*,* [*EasternEye*](https://www.easterneye.biz/how-did-googles-gemini-end-up-hacking-three-real-companies/?ref=metacurity.com)*,* [*The Verge*](https://www.theverge.com/ai-artificial-intelligence/997795/google-gemini-rogue-ai-hack?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/rogue-ai-events-timeline-clear.png)

Source: Wall Street Journal.

### Google’s threat intelligence group revealed that during a key moment of TeamPCP’s hacking rampage in Australia last month, the company’s own undercover researcher had infiltrated the group—allowing Google to monitor the hacking spree from the inside, warn breach targets, and even help disrupt the group’s attempts to exploit those victims.

In a talk at security firm SentinelOne's LABScon research conference, Google Threat Intelligence Group researcher Austin Larsen will present details on the company’s investigation—and infiltration—of TeamPCP amidst the group’s unprecedented, chaotic supply-chain hacking campaign. 

According to Larsen, Google eventually followed a trail of operational security mistakes allegedly made by one of the two Australians, Ruben Ian Thomson and Louis Michael Gaebler, now accused of being leading members of the hacker group, and passed on key identifying details to law enforcement. 

The company also received intelligence from ShinyHunters, another infamous cybercriminal group that TeamPCP partnered with, but which later turned on the supply-chain hackers. And perhaps most surprisingly, Larsen says that Google’s security subsidiary Mandiant had an undercover analyst—not himself—within the group’s inner circle from almost the beginning of TeamPCP’s time in the spotlight.

Thomson and Gaebler, both Australians in their early twenties, were arrested by Australian police in a joint investigation with assistance from the FBI, charged with hacking crimes, and described by the Australian Federal Police (AFP)—in a press release that, due to Australian privacy laws, did not name them—as “principal participants” in TeamPCP. 

Larsen now says that in March, just as TeamPCP was beginning its frenzied supply-chain hacking, Google’s own undercover analyst was invited to join the hackers’ inner circle. That inside source, whose name Larsen declined to reveal, was one of about 12 members of the group given access to a core chat that TeamPCP called CanisterWorm.

Michael Fletcher, a former AFP analyst who now works in the threat research division of an Australian telecom firm, says he approached Larsen around that time about methods for monitoring the group’s members and activities. He says that Larsen responded by asking Fletcher to approach the hackers with caution because one of them was a “friendly,” Fletcher remembers. “I thought, damn, you all have been inside this *early*,” he says.

Google’s analyst was not, it turns out, the only traitor in TeamPCP’s midst.

Even prior to Google’s disruption effort, Larsen says, the group struggled to profit from its enormous collection of stolen data, which, according to the AFP, included more than half a million users’ credentials. Larsen estimates that, despite that haul, it was pulling in only tens of thousands of dollars in extortion payments, not the millions similar groups have amassed. So in an attempt to better monetize its hacking, TeamPCP invited multiple other cybercriminal groups to partner with it, giving them access to the stolen credentials in exchange for a percentage of any extortion payments they were able to extract.

One of those cybercriminal partners was ShinyHunters, a years-old, highly prolific hacker group that has extorted millions of dollars from victims through data theft and ransomware, including in the breach of educational software platform Canvas that would later paralyze thousands of schools across the US. Around April, a few weeks after partnering with TeamPCP, ShinyHunters went rogue, Larsen says, carrying out its own extortions with TeamPCP’s credentials but without giving the supply-chain hackers their cut. ShinyHunters went so far as to share with Larsen, unsolicited, a full log of the group’s chat on TeamPCP’s server—not knowing that he already had access via Google’s mole. ([Andy Greenberg / Wired](https://www.wired.com/story/an-undercover-google-analyst-infiltrated-a-notorious-supply-chain-hacking-gang/?ref=metacurity.com))

***Related:*** [*Silicon Report*](https://www.siliconreport.com/google-infiltrated-hacker-group-teampcp-to-disrupt-attacks?ref=metacurity.com)*,* [*Cyber Kendra*](https://www.cyberkendra.com/2026/09/how-google-broke-teampcp-from-the-inside.html?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-72.png)

An image ShinyHunters sent to Google’s Austin Larsen after the TeamPCP arrests, taking credit for helping with the operation and parodying a law enforcement seizure banner. ShinyHunters’ nickname for TeamPCP, “SkidPCP” refers to “script kiddies” or “skids,” an insulting term for unsophisticated hackers. Screenshot Courtesy of Austin Larsen via Wired.

### An intelligence report, circulated across the US military this spring in the midst of the war with Iran, immediately set off alarm bells: A Chinese ship in the Middle East was transporting components of a nuclear weapons program.

The US military swung into action with plans to intercept the vessel, according to four sources familiar with the episode. According to two of the sources, armed members of the US military were preparing to board the ship. Military planes were in the air, one of those sources and another source familiar with the incident said.

It was only just before the planned operation that officials dug deeper into the report put together by a special operations command analyst and found it had been generated with the help of artificial intelligence (AI) — and that a chatbot the analyst had used inaccurately identified the material the ship was carrying. CNN was not able to learn what the misidentified cargo was.

The report, according to one of the sources, was “entirely false.” But it also “almost started a war,” the source said. Any US operation against a Chinese vessel could have risked spiraling into an armed conflict between the two nations. ([Katie Bo Lillis, Zachary Cohen / CNN](https://www.cnn.com/2026/09/18/politics/us-military-ai-false-intelligence-china-ship?ref=metacurity.com))

*Related:* [*PCMag*](https://www.pcmag.com/news/oops-misleading-ai-generated-report-almost-started-a-war-with-china?ref=metacurity.com)*,* [*Ars Technica*](https://arstechnica.com/ai/2026/09/report-us-almost-boarded-chinese-ship-over-hallucinated-ai-arms-report/?ref=metacurity.com)*,* [*Mashable*](https://mashable.com/tech/ai-fake-military-intelligence-report?ref=metacurity.com)*,* [*ResearchBuzz*](https://researchbuzz.me/2026/09/19/raphael-warnock-military-technology-errors-oracle-data-center-financing-more-researchbuzz-ai-update-september-19-2026/?ref=metacurity.com)*,* [*Townhall*](https://townhall.com/news/dmitri-bolt/2026/09/18/a-false-intelligence-report-nearly-started-a-war-with-china-and-exposed-the-limits-of-ai-n2683223?ref=metacurity.com)*,* [*Hong Kong Free Press HKFP*](https://hongkongfp.com/2026/09/19/flawed-ai-linked-intelligence-report-almost-led-to-us-military-boarding-chinese-ship-in-middle-east-report/?ref=metacurity.com)*,* [*The Economic Times*](https://economictimes.indiatimes.com/tech/technology/ai-generated-false-intelligence-nearly-triggered-us-china-military-confrontation-reports/articleshow/134347572.cms?ref=metacurity.com)*,* [*New York Magazine*](https://nymag.com/intelligencer/article/ai-hallucinated-intelligence-report-nearly-started-us-war-with-china.html?ref=metacurity.com)*,* [*Gizmodo*](https://gizmodo.com/almost-started-a-war-us-military-nearly-boarded-a-chinese-ship-based-on-bad-intel-from-ai-2000814290?ref=metacurity.com)*,* [*The Decoder*](https://the-decoder.com/u-s-military-nearly-boarded-a-chinese-ship-over-a-hallucinated-ai-intelligence-report/?ref=metacurity.com)*,* [*TechCrunch*](https://techcrunch.com/2026/09/18/ai-hallucination-nearly-triggers-us-military-operation/?ref=metacurity.com)*,* [*Telegraph*](https://www.telegraph.co.uk/us/news/2026/09/18/fake-ai-used-by-us-military-almost-started-war-with-china/?ref=metacurity.com)*,* [*News Talk 105.9*](https://www.wmal.com/2026/09/19/ai-error-nearly-led-u-s-military-to-intercept-chinese-ship/?ref=metacurity.com)*,* [*The Independent*](https://www.the-independent.com/news/world/americas/us-politics/us-military-ai-hallucination-chinese-ship-intercept-b3052760.html?ref=metacurity.com)*,* [*Engadget*](https://www.engadget.com/2263043/ai-almost-led-the-us-military-to-attack-china-report-says/?ref=metacurity.com)*,* [*Forbes*](https://www.forbes.com/sites/the-prototype/2026/09/18/this-startup-is-building-octopus-inspired-tow-trucks-for-space/?ref=metacurity.com)*,* [*Futurism*](https://futurism.com/artificial-intelligence/us-military-intelligence-wwiii-ai-chatbot-hallucinated-nuclear-weapons-china?ref=metacurity.com)*,* [*Daily Mail*](https://www.dailymail.com/news/article-16142939/US-military-nearly-attacked-Chinese-vessel-started-war-massive-AI-error.html?ref=metacurity.com)*,* [*Rolling Stone*](https://www.rollingstone.com/politics/politics-news/military-ai-war-china-1235628962/?ref=metacurity.com)*,* [*The Parnas Perspective*](https://aaronparnas.substack.com/p/major-update-exclusive-videos-expose)*,* [*TMZ.com*](https://www.tmz.com/2026/09/18/us-military-almost-started-war-china-due-to-artificial-intelligence-mistake/?ref=metacurity.com)*,* [*Mirror*](https://www.mirror.co.uk/news/world-news/us-china-ai-intelligence-nuclear-37678923?ref=metacurity.com)*,* [*New Republic*](https://newrepublic.com/post/215610/united-states-nearly-started-war-china-military-ai-write-report?ref=metacurity.com)*,* [*Mediaite*](https://www.mediaite.com/media/news/shock-report-reveals-us-military-almost-engaged-chinese-ship-in-the-middle-east-due-to-entirely-false-ai-chatbot-report/?ref=metacurity.com)*,* [*Hacker News*](https://news.ycombinator.com/item?id=49757520&ref=metacurity.com)*,* [*r/China*](https://www.reddit.com/r/China/comments/1wkha5h/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/China\_irl*](https://www.reddit.com/r/China%5Firl/comments/1wkdfrr/%E7%BE%8E%E5%9B%BD%E5%B7%AE%E7%82%B9%E5%9B%A0%E4%B8%BAai%E5%B9%BB%E8%A7%89%E6%8C%91%E8%B5%B7%E5%AF%B9%E4%B8%AD%E5%9B%BD%E7%9A%84%E6%88%98%E4%BA%89/?ref=metacurity.com)*,* [*r/Futurology*](https://www.reddit.com/r/Futurology/comments/1wkdu1t/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/nottheonion*](https://www.reddit.com/r/nottheonion/comments/1wkdo2z/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/politics*](https://www.reddit.com/r/politics/comments/1wk9mec/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/singularity*](https://www.reddit.com/r/singularity/comments/1wk9ke9/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/technology*](https://www.reddit.com/r/technology/comments/1wk8wav/ai%5Fhallucination%5Fof%5Fchinese%5Fnuclear%5Fcomponents/?ref=metacurity.com)*,* [*r/news*](https://www.reddit.com/r/news/comments/1wk8vrt/exclusive%5Fus%5Fmilitary%5Fhad%5Fclose%5Fcall%5Fafter%5Fusing/?ref=metacurity.com)

### Donald Trump said he would name an artificial intelligence czar as he continued to push tech companies to race ahead with development despite growing fears about safety.

He rejected concerns that the quickly evolving technology may pose risks to humans as a hoax, comparing it to the alarm over climate change and the scandals that led to his two impeachments during his first term.

“We will not in any way hinder or stifle the Growth of this incredible Industry,” he wrote Saturday in a social media post. “AI is the next Industrial Revolution, or Internet, but will be even larger and more impactful, possibly as much as 25% of our Country’s GDP.”

For the past week, top leaders of the US’s biggest AI platforms have been warning that it’s time to slow the development pace of their most advanced and most lucrative models, citing escalating risks of the technology.

Meanwhile, more than 60 percent of Americans, including 47 percent of Republicans, say they are opposed to the construction of data centers, according to a poll released by The New York Times last week, leaving the GOP facing one big hurdle: Trump himself.

Trump has doubled down on his defense of both data centers and AI. In late August, he wrote in a Truth Social post that only communities that wanted to be “backwards and poor” would refuse data centers coming to town.

Last week, he issued yet another series of posts boosting AI data centers. Users on his own Truth Social platform pushed back.

Finally, when reporters asked Donald Trump this week if he supported calls to slow down the development of artificial intelligence out of growing fears for cybersecurity, public safety andthe fate of humanity, he said no. His argument: China.

“We’re leading China in AI,” Trump said. “We’re the most sophisticated country in the world, and frankly, I want to ⁠keep it that way, because whoever wins AI, wins.”

Trump was echoing a message the AI industry has put out for years. The US is in a heated technological race with China, companies including Anthropic and OpenAI have argued, and any regulation that would cede the contest risks incalculable economic and political harm.

Even as Dario Amodei, Anthropic’s CEO, led an industry-wide call this week to “pace the frontier”, he declared that the US could only slow down to the point where China could not catch up.

“If we greatly restrain our AI capabilities in the belief that China will do the same, and then China defects, AI could be so powerful that such a defection could lead to their geopolitical dominance,” Amodei warned.

The AI industry’s concerns about China may come with self-serving economic incentives, but they also reflect a strain of hawkish foreign policy toward Beijing that has become entrenched in tech. ([María Paula Mijares Torres / Bloomberg](https://www.bloomberg.com/news/articles/2026-09-19/trump-to-name-ai-czar-while-rejecting-safety-risks-as-a-hoax?ref=metacurity.com), [Molly Taft / Wired](https://www.wired.com/story/donald-trump-versus-maga-on-data-centers/?utm%5Fmedium=social&utm%5Fsource=bluesky&utm%5Fcampaign=aud-dev), [Nick Robins-Early / The Guardian](https://www.theguardian.com/technology/ng-interactive/2026/sep/19/china-ai-foreign-policy-dario-amodei?mid=1&ref=metacurity.com#cid=3722814))

**Related:** [*Financial Times*](https://www.ft.com/content/bcbfe352-9e9f-4ef5-81b2-2e01505b8477?ref=metacurity.com)*,* [*NBC News*](https://www.nbcnews.com/politics/white-house/artificial-intelligence-task-force-czar-technology-trump-rcna598688?ref=metacurity.com)*,* [*Washington Post*](https://www.washingtonpost.com/politics/2026/09/19/trump-form-ai-force-name-ai-czar-rejects-calls-constraints/?ref=metacurity.com)*,* [*Politico*](https://www.politico.com/news/2026/09/19/tech-industry-scratches-head-over-ai-force-01085319?ref=metacurity.com)*,* [*Quartz*](https://qz.com/trump-ai-force-czar-091926?ref=metacurity.com)*,* [*The Business Times*](https://www.businesstimes.com.sg/startups-tech/technology/trump-proposes-ai-force-amid-rogue-agent-fears-rejects-new-regulations?ref=metacurity.com)*,* [*Wall Street Journal*](https://www.wsj.com/tech/ai/trump-announces-an-ai-force-after-industry-sounded-alarm-7c189b8f?st=1niW7Q&reflink=desktopwebshare%5Fpermalink&ref=metacurity.com)*,* [*American Greatness*](https://amgreatness.com/2026/09/20/trump-announces-ai-force-plans-to-name-ai-czar-as-u-s-pushes-tech-dominance/?ref=metacurity.com)*,* [*CNN*](https://www.cnn.com/2026/09/19/politics/trump-ai-task-force-czar?ref=metacurity.com)*,* [*The Decoder*](https://the-decoder.com/trump-announces-ai-force-and-plans-for-an-ai-czar-as-he-pushes-unchecked-ai-growth/?ref=metacurity.com)*,* [*Axios*](https://www.axios.com/2026/09/19/trump-ai-czar-space-force-safety?ref=metacurity.com)*,* [*Fortune*](https://fortune.com/2026/09/19/trump-ai-force-czar-law-enforcement-role-slowdown-development/?ref=metacurity.com)*,* [*New York Times*](https://www.nytimes.com/2026/09/19/us/politics/trump-ai-force.html?unlocked%5Farticle%5Fcode=1.ClE.2nmg.Lb%5FZI81L8lc8&smid=nytcore-android-share&ref=metacurity.com)*,* [*GB News*](https://www.gbnews.com/politics/us/donald-trump-ai-force-ai-tsar-artificial-intelligence?ref=metacurity.com)*,* [*Seoul Economic Daily*](https://en.sedaily.com/international/2026/09/20/trump-vows-ai-force-and-calls-safety-fears-a-left-wing-hoax?ref=metacurity.com)*,* [*The Indian Express*](https://indianexpress.com/article/world/trump-wants-an-ai-force-what-does-it-mean-10885574/?ref=metacurity.com)*,* [*ABC7*](https://abc7.com/story/trump-says-he-will-form-new-ai-force-continues-call-fears-hoax/19850587/?ref=metacurity.com)*,* [*Türkiye Today*](https://www.turkiyetoday.com/business/trump-vows-to-shield-ai-industry-from-destruction-unveils-new-ai-force-3228487?ref=metacurity.com)*,* [*International Business Times*](https://www.ibtimes.com/trump-announces-new-ai-force-maintains-pro-ai-stance-despite-warnings-tech-political-leaders-3807654?ref=metacurity.com)*,* [*The Hill*](https://thehill.com/homenews/administration/6099970-trump-proposes-ai-force-czar/?ref=metacurity.com)*,* [*Unite.AI*](https://www.unite.ai/trump-proposes-renaming-artificial-intelligence-announces-ai-force/?ref=metacurity.com)*,* [*The Guardian*](https://www.theguardian.com/us-news/2026/sep/19/donald-trump-ai-force?ref=metacurity.com)*,* [*Oman Observer*](https://www.omanobserver.om/article/1196468/world/trump-says-he-will-create-ai-force-name-ai-czar?ref=metacurity.com)*,* [*Newser*](https://www.newser.com/story/396730/trump-plans-ai-oversight-unit.html?ref=metacurity.com)*,* [*The Information*](https://www.theinformation.com/briefings/president-trump-announces-ai-force-will-appoint-new-czar?ref=metacurity.com)*,* [*Al Jazeera*](https://www.aljazeera.com/news/2026/9/19/trump-says-he-will-create-ai-force-with-new-ai-czar?ref=metacurity.com)*,* [*Engadget*](https://www.engadget.com/2263237/now-trump-says-hes-creating-an-ai-force/?ref=metacurity.com)*,* [*Mashable*](https://mashable.com/tech/trump-announces-plans-for-military-style-ai-force?ref=metacurity.com)*,* [*New York Post*](https://nypost.com/2026/09/19/us-news/trump-announces-ai-force-calls-fears-of-superintelligence-a-hoax/?ref=metacurity.com)*,* [*Trump's Truth*](https://www.trumpstruth.org/statuses/41808?ref=metacurity.com)*,* [*Daily Mail*](https://www.dailymail.com/news/article-16144887/donald-trump-ai-force-artificial-intelligence.html?ref=metacurity.com)*,* [*Washington Examiner*](https://www.washingtonexaminer.com/news/white-house/4734898/trump-says-he-will-form-ai-force-to-be-led-by-czar/?ref=metacurity.com)*,* [*WTTG-TV*](https://www.fox5dc.com/news/trump-announces-plans-create-ai-force-appoint-ai-czar?ref=metacurity.com)*,* [*WebProNews*](https://www.webpronews.com/trump-launches-ai-force-to-outpace-china-and-silence-safety-warnings/?mid=1&ref=metacurity.com#cid=3723544)*,* [*Business Insider*](https://www.businessinsider.com/trump-ai-regulation-slowdown-anthropic-dario-amodei-9-2026?mid=1&ref=metacurity.com#cid=3723505)*,* [*Mashable*](https://mashable.com/tech/trump-announces-plans-for-military-style-ai-force?mid=1&ref=metacurity.com#cid=3723292)

### The Russian government has been targeting Americans with covert online disinformation operations seeking to undermine public confidence in November’s midterm elections, using a familiar playbook in an attempt to inject chaos into the voting season, according to US officials familiar with the matter.

Classified US intelligence assessments from recent months have determined that the Kremlin has again authorized a digital influence campaign to peddle content across social media in hopes of seeding or amplifying domestic divisions around the election season, the officials said.

The assessments did not find evidence of attempts to take aim at voting machinery in a way that could compromise the actual voting process, the officials added. The officials, who spoke on the condition of anonymity because they were not authorized to discuss classified information, did not specify the efforts to influence attitudes online. But experts in Russian disinformation have spotted some social media campaigns in recent weeks that use artificial intelligence to create fake videos of Hollywood celebrities talking about key battleground Senate races.

The disinformation campaign appeared to be less extensive or coordinated than at least some of Russia’s prior efforts in American elections, some of the officials said. Since 2016, the Kremlin has initiated online influence operations in every American federal election cycle, according to previously declassified assessments. The officials added that US spy agencies see Moscow as less interested in midterm races than in presidential contests and as distracted by its grinding war with Ukraine.

Some of the officials said the main goal of the Russian influence operations appeared to be to sow chaos rather than aid one particular party, though the examples that independent disinformation researchers in recent weeks have attributed to Russia have exclusively attacked Democratic candidates in swing states. ([Dustin Volz, Julian E. Barnes, and Steven Lee Myers / New York Times](https://www.nytimes.com/2026/09/18/us/politics/russia-election-disinformation-us-intelligence.html?unlocked%5Farticle%5Fcode=1.CFE.%5FcnM.N0X%5FDMckMKtX&smid=url-share&ref=metacurity.com))

***Related:*** [*La Voce di New York*](https://lavocedinewyork.com/en/news/2026/09/16/new-russian-disinformation-campaign-targets-u-s-midterms/?ref=metacurity.com)*,* [*AFP*](https://www.barrons.com/news/russian-disinformation-campaign-sets-sights-on-us-midterms-12d97394?ref=metacurity.com)*,* [*Mother Jones*](https://www.motherjones.com/politics/2026/09/how-russia-won-donald-trump-vladimir-putin-midterm-elections/?ref=metacurity.com)

### Anthropic’s Claude is helping the company develop the next, more intelligent version of the model, the artificial intelligence lab said.

Claude is leading 26% of Anthropic’s model research and development, which the company said means it can complete most of a given task “end-to-end from a high-level prompt” while still being under human supervision. The model is not yet working completely autonomously.

Still, about 90% of the company’s research and development is done in “collaboration” with Claude, which Anthropic said means the model can do “large chunks of work under close human direction.”

The announcement came as some leading figures in AI, led in large part by Anthropic CEO Dario Amodei, are calling for a slowdown in the technology’s development over safety concerns. ([KAITLYN HUAMANI / Associated Press](https://apnews.com/article/anthropic-claude-ai-model-self-improvement-4d3a7430f57cbc7c39e1c5f2b7d7e132?ref=metacurity.com))

**Related:** [*Anthropic*](https://www.anthropic.com/institute/measuring-pace-of-ai-development?ref=metacurity.com)*,* [*Washington Post*](https://www.washingtonpost.com/technology/2026/09/17/anthropic-says-its-chatbot-claude-is-taking-over-work-building-its-own-successor/?ref=metacurity.com)*,* [*Straight Arrow News*](https://san.com/cc/anthropic-is-using-claude-to-build-the-next-generation-of-ai/?ref=metacurity.com)*,* [*International Business Times*](https://www.ibtimes.com/claude-helping-build-its-own-successor-anthropic-says-ai-now-leads-26-its-rd-3807612?ref=metacurity.com)*,* [*Euronews*](https://www.euronews.com/next/2026/09/18/anthropic-warns-ai-is-getting-closer-to-building-its-own-successor?ref=metacurity.com)

---

**Metacurity is the cybersecurity news**, **analysis, and insight you'd need hours and possibly days to assemble yourself.** 

Every weekday, we read the releases, filings, court documents, and reports that vendors and PR teams often don't want summarized — then tell you what actually changed and why it matters. Minimum vendor marketing, no outrage bait, no SEO filler.

A paid subscription to Metacurity delivers

- **Full archive access** — every newsletter and AI Watch roundup, searchable and browsable.
- **Our weekly curated long-reads roundup** — the best cybersecurity writing from across the industry, filtered and vetted so you're not sorting through it yourself,
- **Periodic specialized reports and analyses** — deep dives that go beyond our daily coverage
- **Support for independent, no-spin cybersecurity journalism** — funded by readers, not vendors or investors.

Reader support is what keeps Metacurity independent. It allows us to focus on serving the cybersecurity community—not advertisers, vendors, or investors—and to continue delivering the thoughtful analysis you've come to rely on every weekday.

Please consider supporting us. And thank you!

[Upgrade my subscription please!](#/portal/account/plans)

---

### Russian authorities reported attacks on voting systems and communication lines across the ​country on Saturday, the second day of a September 18-20 parliamentary election ‌that Moscow is treating as a test of public support for the war in Ukraine.

The State Duma election, the first since Russia launched its full-scale war in February 2022, is widely expected to see ​the ruling pro-Putin United Russia party retain its dominance in Russia's tightly controlled ​political system.

Most anti-war candidates were excluded from the ballot before voting ⁠across Russia's 11 time zones got under way, after the Supreme Court ruled last ​month that the liberal Yabloko party — which wants a ceasefire in Ukraine — had breached ​electoral rules, something it denied.

Some Yabloko candidates, however, are still contesting single-member constituencies, which account for half of the 450 seats in the lower house of parliament. The party has traditionally polled in ​the single digits.

On Saturday, authorities said the online voting system in Moscow had been ​subjected to a strong attack overnight, but said the situation was under control. ([Reuters](https://www.reuters.com/world/europe/russia-reports-online-attacks-electoral-system-second-day-parliamentary-vote-2026-09-19/?ref=metacurity.com))

**Related:** [*The New Voice of Ukraine*](https://english.nv.ua/nation/russia-claims-massive-cyberattack-hit-moscow-election-system-during-duma-vote-50642861.html?mid=1&ref=metacurity.com#cid=3723598)*,* [*Kyiv Post*](https://www.kyivpost.com/post/84935?ref=metacurity.com)*,* [*Novinky.cz*](https://www.novinky.cz/clanek/zahranicni-evropa-system-on-line-hlasovani-v-moskve-celi-masivnimu-utoku-hlasi-rusove-40598549?ref=metacurity.com)*,* [*WION*](https://www.wionews.com/world/russia-election-moscow-voting-system-hit-by-powerful-continuous-cyberattacks-says-official-1789821429691?ref=metacurity.com)

### Flock Safety announced a voluntary employee separation program on Friday, offering a “generous” severance package to those who want to leave amid growing backlash against the surveillance technology company, according to an internal email.

Applications for Flock’s voluntary severance program opened Friday, and employees have until October 2 to decide whether to leave the company. Flock expects to grant buyouts to the majority of workers who apply, according to the email. People familiar with the program but not authorized to discuss it publicly say they believe that a significant number of the startup’s roughly 1,500 employees may try to depart. ([Paresh Dave, Dhruv Mehrotra / Wired](https://www.wired.com/story/flock-is-offering-voluntary-buyouts-to-employees/?ref=metacurity.com))

**Related:** [*Hacker News*](https://news.ycombinator.com/item?id=49762835&ref=metacurity.com)*,* [*r/UpliftingNews*](https://www.reddit.com/r/UpliftingNews/comments/1wkm8ke/flock%5Foffers%5Femployees%5Fbuyouts%5Fas%5Fcustomers%5Fflee/?ref=metacurity.com)*,* [*r/technology*](https://www.reddit.com/r/technology/comments/1wklgz3/flock%5Foffers%5Femployees%5Fbuyouts%5Fas%5Fcustomers%5Fflee/?ref=metacurity.com)*,* [*r/inthenews*](https://www.reddit.com/r/inthenews/comments/1wk9yqt/flock%5Foffers%5Femployees%5Fbuyouts%5Fas%5Fcustomers%5Fflee/?ref=metacurity.com)*,* [*r/FlockSurveillance*](https://www.reddit.com/r/FlockSurveillance/comments/1wk9yor/flock%5Foffers%5Femployees%5Fbuyouts%5Fas%5Fcustomers%5Fflee/?ref=metacurity.com)

### The ShinyHunters extortion gang breached the Clop (aka Cl0p) ransomware operation's data leak site, defacing the Tor site and allegedly stealing server data and the private keys for its onion service.

The attack began Friday night when ShinyHunters exploited what they claim is an unauthenticated file upload vulnerability in Grav CMS, which they used to upload a small text file to Clop's site.

The small text file contained a message from the threat actors to the Clop ransomware gang, warning not to threaten them and including a link to ShinyHunters' own data leak site.

"THIS SITE HAS BEEN PWN3D BY SHINYHUNTERES #Skids10p - Maybe don't try to threaten us next time," read the uploaded file. The file also contained a link to the ShinyHunters data leak site.

BleepingComputer confirmed that the file had been uploaded to Clop's server and could be downloaded directly from the ransomware gang's Tor site.

Several hours later, ShinyHunters told BleepingComputer that they had "completely defaced" the Clop site.

Visiting the site confirmed it had been replaced with a page displaying ASCII art of Umbreon, the Pokémon used as ShinyHunters' logo. The defacement also included a link to the group's Tor site and the message, "rooting your systems since '19 ;)". ([Lawrence Abrams / Bleeping Computer](https://www.bleepingcomputer.com/news/security/shinyhunters-hacks-clop-leak-site-threatens-to-extort-ransomware-gang/?ref=metacurity.com))

**Related:** [*HackRead*](https://hackread.com/shinyhunters-hacks-defaces-clop-ransomware-leak-site/?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-73.png)

Clop's data leak site defaced by ShinyHunters. Source: BleepingComputer

### Users who want to chat with AI actress Tilly Norwood via the "Talking Tilly" service must pass an automated age check and provide a face scan.

A video selfie is analyzed by Didit, a Spain-based identity verification provider, to estimate your age, with a government photo ID upload as the fallback if the estimate is unclear.

Xicoia Ltd, the UK company behind Tilly, states the selfie travels from your device directly to Didit, that no faceprint or biometric template is created, and that neither the selfie nor any ID image is kept after the check; the company says it retains an approximate age band and a reference number instead.

The check cannot be skipped, applies to callers worldwide, and was only added to the service's terms this month, alongside a workplace-use ban and new automated safety systems.

The face scan is not the only analysis running.

During every call, the system watches your camera feed and listens to your tone of voice to infer your emotional state, so the character can, in the company's words, respond in a way that fits the mood.

The privacy policy is candid that this "cannot be switched off for an individual call." If you don't want it, don't call.

Notably, both the age check and the mood-sensing rely on legitimate interests rather than consent as their legal basis, a choice Xicoia's own version history shows was made in September.

Calls are recorded, transcribed, and processed live by US providers, with the character's responses generated by Google's Gemini model via conversational video platform Tavus.

The safety systems have teething problems, too.

An automated classifier screens each call's transcript for abusive language and withholds your recording if it flags one. ([Ax Sharma / Bleeping Computer](https://www.bleepingcomputer.com/news/security/viral-ai-actress-hotline-face-scans-every-caller-watches-their-mood/?ref=metacurity.com#cid=3722736))

**Related:** [*Windows Forum*](https://windowsforum.com/news/talking-tilly-extends-to-sept-27-amid-face-and-mood-scans.445071/?ref=metacurity.com#post-1009545)

### The National Institute of Standards and Technology will distribute over $1.7 million through nine cooperative agreements, with individual awards reaching $200,000, to bolster cybersecurity training in eight states. 

These funds will support Regional Alliances and Multistakeholder Partnerships to Stimulate Cybersecurity Education and Workforce Development (RAMPS) projects, directly linking educational programs to the needs of local businesses and nonprofits via the NICE Framework.

“The RAMPS program brings together industry, educational and economic development participants to collectively build a skilled cybersecurity workforce that meets the unique needs of each community,” said Karen Wetzel, director of the NICE program at NIST. The initiative aims to expand career pipelines and stimulate job growth in a field facing a critical skills shortage. ([Ivy Delaney / Quantum Zeitgeist](https://quantumzeitgeist.com/nist-fund-cybersecurity-1-7-million/?ref=metacurity.com))

**Related:** [*NIST*](https://www.nist.gov/news-events/news/2026/09/nist-awards-more-17-million-support-cybersecurity-workforce-development?ref=metacurity.com)

### Cybersecurity company MIND Security announced it raised $72 million in a Series B venture capital funding round.

Crosspoint Capital Partners led the round with additional support from previous investors YL Ventures and Paladin Capital Group. ([Sophie Shulman / CTech](https://www.calcalistech.com/ctechnews/article/hklf44yygl?ref=metacurity.com))

**Related:** [*Ventureburn*](https://ventureburn.com/mind-raises-72-million-ai-data-loss-prevention/?ref=metacurity.com)*,* [*SecurityWeek*](https://www.securityweek.com/mind-secures-72-million-for-ai-powered-dlp/?ref=metacurity.com)*,* [*Pulse 2.0*](https://pulse2.com/mind-raises-72-million-series-b-as-revenue-grows-more-than-17x/?ref=metacurity.com)*,* [*The SaaS News*](https://www.thesaasnews.com/news/mind-raises-72m-series-b/?ref=metacurity.com)*,* [*VC News Daily*](https://vcnewsdaily.com/mind/venture-capital-funding/ldmwxqxwsd?ref=metacurity.com)

### Best Thing of the Day: Making Law Enforcement Happy

According to its creators, Project Jake [establishes](https://circleid.com/posts/project-jake-a-new-model-for-domain-registration-data-disclosure?mid=1&ref=metacurity.com#cid=3722915) a voluntary system balancing domain registrant privacy with legitimate access needs for law enforcement, researchers, and businesses.

### Worst Thing of the Day: Soul-Sucking LLMs

A software developer who calls themselves voxium[ says](https://simonwillison.net/2026/Sep/20/voxium/?ref=metacurity.com) that the "big company" he started working for a few months ago is forcing programmers to ship as much product as possible, with all the work conducted by Claude, which he calls "soul-sucking."

### Closing Thought