logo

Google: China's APT31 used Gemini to plan cyberattacks against US orgs

ID: 6595fdc3-facb-5967-a7a0-de9ea88aaddc

STIX ID: report--6595fdc3-facb-5967-a7a0-de9ea88aaddc

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2026-02-12

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Google Threat Intelligence attributes activity to China-backed APT31 using Gemini and the Hexstrike framework to automate vulnerability discovery, targeted reconnaissance, and exploit testing against US organizations; accounts linked to the campaign were disabled. The report warns that agentic AI adoption accelerates attack speed, widens the patch gap, and includes model-extraction attempts against Google’s models, increasing risk to critical infrastructure and enterprise defenses.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.