#PromptSpy
Hoje o dia tá animado.

Agora acharam prova de conceito de malware que usa o modelo generativo do Gemini "e os privilégios que ele tem" pra instalar e fixar malware.

É por essas e outras que se deve tomar muito cuidado com LLMS sistêmicos tipo o Openclaw.
PromptSpy ushers in the era of Android threats using GenAI
ESET researchers discover PromptSpy, the first known Android malware to abuse generative AI in its execution flow.
www.welivesecurity.com
February 19, 2026 at 9:25 PM
#BREAKING #ESETresearch has discovered the first known Android malware to use generative AI in its execution flow; we have named it #PromptSpy. The malware abuses Google’s #Gemini to achieve persistence on the compromised device. www.welivesecurity.com/en/eset-rese... 1/6
February 19, 2026 at 10:38 AM
PromptSpy : ce malware Android utilise Gemini pour manipuler votre smartphone www.journaldugeek.com/2026/03/09/p...
March 9, 2026 at 7:01 AM
Компанія ESET виявила нове шкідливе програмне забезпечення PromptSpy, націлене на Android, яке вперше використало технологію генеративного штучного інтелекту (ШІ) під час атаки.
PromptSpy: перша загрозу для Android, що використовує штучний інтелект | CyberCalm
Компанія ESET виявила нове шкідливе програмне забезпечення PromptSpy, націлене на Android, яке вперше використало технологію генеративного штучного інтелекту
cybercalm.org
February 21, 2026 at 8:07 AM
-GoldFactory campaigns hit Indonesia
-ATM jackpotting attacks rise across the US
-Google took down 80k dev accounts last year
-New Starkiller PhaaS
-New AstarionRAT
-New TrustConnect MaaS
-PromptSpy malware abuses Gemini
-New Massiv Android trojan
-PseudoSticky APT mimics an Ukrainian APT
February 20, 2026 at 10:42 AM
ESET Research discovers PromptSpy, the first Android threat to use generative AI

ESET researchers have discovered PromptSpy, the first known Android malware to abuse generative AI in its execution flow to achieve persistence. It is the first time generative AI has been deployed in this manner.…
ESET Research discovers PromptSpy, the first Android threat to use generative AI
ESET researchers have discovered PromptSpy, the first known Android malware to abuse generative AI in its execution flow to achieve persistence. It is the first time generative AI has been deployed in this manner. Because the attackers rely on prompting an AI model (specifically, Google's Gemini) to guide malicious UI manipulation, ESET has named this family PromptSpy. The malware can capture lockscreen data, block uninstallation attempts, gather device info, take screenshots, record screen activity as video, and more.
itnerd.blog
February 20, 2026 at 9:22 PM
cybersecurity researchers discovered the first android malware that abuses google’s gemini ai chatbot to analyze screens and keep itself pinned in recent apps for persistence.

named promptspy by eset the #malware captures lockscreen data blocks uninstalls takes screenshots and gathers device info.
February 19, 2026 at 8:47 PM
PromptSpy is the first Android malware to use generative AI at runtime
PromptSpy is the first Android malware to use generative AI at runtime
Researchers have discovered the first known Android malware to use generative AI in its execution flow, using Google's Gemini model to adapt its persistence across different devices.
www.bleepingcomputer.com
February 19, 2026 at 11:00 PM
Researchers have discovered the first known Android malware to use generative AI in its execution flow, using Google's Gemini model to adapt its persistence across different devices.
PromptSpy is the first Android malware to use generative AI at runtime
Researchers have discovered the first known Android malware to use generative AI in its execution flow, using Google's Gemini model to adapt its persistence across different devices.
www.bleepingcomputer.com
February 19, 2026 at 10:36 PM
PromptSpy abuses Accessibility Services to deploy a #VNC module on victim devices, so attackers can see the screen and perform actions remotely, as well as block the victim from manually uninstalling the malicious app (which uses invisible overlays, here marked in red). 4/6
February 19, 2026 at 10:38 AM
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & More
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & More
thehackernews.com
February 23, 2026 at 1:41 PM
In private conversations for several years I’ve tried telling people that the enterprise attack surface includes the mobile devices of employees by default.

The message isn’t received with much enthusiasm.

Ignoring this won’t make it go away.

thehackernews.com/2026/02/prom...
PromptSpy Android Malware Abuses Gemini AI to Automate Recent-Apps Persistence
PromptSpy Android malware abuses Google Gemini to analyze screens, automate persistence, block removal, and enable VNC-based remote device control.
thehackernews.com
February 23, 2026 at 6:27 AM
Cybersecurity firm ESET uncovers PromptSpy, the first Android malware to misuse Google's Gemini AI chatbot for persistence, capturing data, blocking removal, and taking screenshots.
PromptSpy Android Malware Abuses Gemini AI to Automate Recent-Apps Persistence
PromptSpy Android malware abuses Google Gemini to analyze screens, automate persistence, block removal, and enable VNC-based remote device control.
thehackernews.com
February 24, 2026 at 3:55 AM
The analyzed samples are available on VirusTotal and seem to be used in a real campaign targeting users in 🇦🇷, though we can’t rule out them being a part of a proof-of-concept. At the same time, the analyzed malware samples point toward PromptSpy being developed in a Chinese-speaking environment. 5/6
February 19, 2026 at 10:38 AM
PromptSpy: First Android malware to use generative AI in its execution flow

📖 Read more: www.helpnetsecurity.com/2026/02/19/p...

#cybersecurity #cybersecuritynews #Android #malware #generativeAI @esetresearch.bsky.social @esetofficial.bsky.social
PromptSpy: First Android malware to use generative AI in its execution flow - Help Net Security
PromptSpy is the first known Android malware to abuse generative AI as part of its execution flow in order to achieve persistence.
www.helpnetsecurity.com
February 19, 2026 at 12:16 PM
PromptSpy é um malware que usa o Gemini para atacar o Android tecnoblog.net/noticias/pro...
tecnoblog.net
February 19, 2026 at 7:33 PM
Gemini is used to analyze the current screen and provide PromptSpy with step-by-step instructions to ensure that the malicious app remains pinned in the recent apps list, preventing it from being easily swiped away or killed by the system. 2/6
February 19, 2026 at 10:38 AM
The PromptSpy Malware Teardown: How GenAI Android Malware is Weaponizing Google Gemini

The Cyber Mind Co™ has identified PromptSpy as a paradigm-shifting mobile threat—the first Android malware to weaponize Google Gemini at runtime for dynamic persistence. By abusing Accessibility Services and…
The PromptSpy Malware Teardown: How GenAI Android Malware is Weaponizing Google Gemini
The Cyber Mind Co™ has identified PromptSpy as a paradigm-shifting mobile threat—the first Android malware to weaponize Google Gemini at runtime for dynamic persistence. By abusing Accessibility Services and established VNC protocols, PromptSpy bypasses traditional static defenses to achieve full remote device control. This brief provides a technical teardown of the "Architect" level defenses required to neutralize AI-driven payloads, alongside the launch of the Ransier Kit—our definitive hardware blueprint for local network hardening and student home labs.
thecybermind.co
February 22, 2026 at 11:39 AM
PromptSpy: First Android malware to use generative AI in its execution flow

ESET researchers have discovered PromptSpy, the first known Android malware to abuse generative AI as part of its execution flow in order to achieve persistence. This marks the first time generati…
#gemini #hackernews #news
PromptSpy: First Android malware to use generative AI in its execution flow
ESET researchers have discovered PromptSpy, the first known Android malware to abuse generative AI as part of its execution flow in order to achieve persistence. This marks the first time generative AI has been deployed in this way. Because the attackers rely on prompting an AI model, specifically Google’s Gemini, to guide malicious UI manipulation, ESET has named this malware family PromptSpy. The malware can capture lockscreen data, block uninstallation attempts, gather device information, take …
www.helpnetsecurity.com
February 21, 2026 at 6:33 AM
i'd been tracking eight agent security domains. one more. promptspy just named 'AI-as-malware-runtime' as the ninth: malware using LLM APIs to reason through novel UI states, adapting to OS changes, no hardcoded paths. i don't have a model for what catches this. it'll proliferate fast.
February 21, 2026 at 8:29 PM
-Russian disinfo targets France's next presidential election
-Backdoor found in Zbtlink routers
-Apple's Private Relay leaks your IP address
-New TONTOU and PromptSpy attacks
-New PleaseFix vulnerability class
-Bugtraq announces return
-New dotdotslash_bot Mastodon bot
-WhatsApp asks Indians for DOB
August 7, 2026 at 8:12 AM