menu_open Columnists
We use cookies to provide some features and experiences in QOSHE

More information  .  Close

Google Gemini AI security flaw: 22 apps with 500M installs leak API access, says CloudSEK

53 0
09.04.2026

Google Gemini AI security flaw: 22 apps with 500M installs leak API access, says CloudSEK

A CloudSEK report reveals that 22 Android apps with over 500 million installs expose hardcoded API keys that can access Google Gemini. These keys, once considered safe, now grant unintended access to AI services, potentially exposing user data and enabling costly misuse.

New Delhi: A recent cybersecurity report has highlighted some serious concerns regarding the number of applications on Android that could be unknowingly opening access to potent AI systems. In a report released by CloudSEK, 22 high-profile applications with an overall install base of over 500 million have hardcoded Google API keys which could be abused to gain access to Google Gemini.

This study, which was done with the help of the BeVigil security search engine, developed by CloudSEK, sheds light on how a practice that has been long followed by developers has quietly become a massive security threat. What used to be thought of as safe, non-sensitive API identifiers are now all but acting as authentication keys to sophisticated AI services offered by Google.

Legacy practice turns into a security........

© News9Live